Record summary

CVE-2019-19824 has a selected CVSS score of 8.8 (high); EIP currently links 1 Nuclei template.

Description

On certain TOTOLINK Realtek SDK based routers, an authenticated attacker may execute arbitrary OS commands via the sysCmd parameter to the boafrm/formSysCmd URI, even if the GUI (syscmd.htm) is not available. This allows for full control over the device's internals. This affects A3002RU through 2.0.0, A702R through 2.1.3, N301RT through 2.1.6, N302R through 3.4.0, N300RT through 3.4.0, N200RE through 4.0.0, N150RT through 3.4.0, N100RE through 3.4.0, and N302RE 2.0.2.

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Nov 11, 2021 · VulnCheck
Reported exploitation
Observed · VulnCheck

Available material

Nuclei templates
1

CISA SSVC decision

ExploitationPoC
AutomatableNo
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated Aug 28, 2024 · Source: CVE List

Affected products and versions

9
ProductSourceVersion rangeStatus
VulnCheckVersion data not supplied

Default status: unknown

CVE ListThrough 2.0.0affected

Default status: unknown

CVE ListThrough 2.1.3affected

Default status: unknown

CVE ListThrough 3.4.0affected

Default status: unknown

CVE ListThrough 3.4.0affected

Default status: unknown

CVE ListThrough 4.0.0affected

Default status: unknown

CVE ListThrough 2.1.6affected

Default status: unknown

CVE ListThrough 3.4.0affected

Default status: unknown

CVE ListBefore 2.0.2affected

Nuclei templates

1
ProjectDiscoveryHIGHTOTOLINK Realtek SD Routers - Remote Command InjectionCVSS 8.8

TOTOLINK Realtek SDK based routers may allow an authenticated attacker to execute arbitrary OS commands via the sysCmd parameter to the boafrm/formSysCmd URI, even if the GUI (syscmd.htm) is not available. This allows for full control over the device's internals. This affects A3002RU through 2.0.0, A702R through 2.1.3, N301RT through 2.1.6, N302R through 3.4.0, N300RT through 3.4.0, N200RE through 4.0.0, N150RT through 3.4.0, and N100RE through 3.4.0.

Impact

Successful exploitation of this vulnerability allows remote attackers to execute arbitrary commands on the affected device.

Remediation

Apply the latest firmware update provided by the vendor to fix the vulnerability.

WeaknessesCWE-78
Authorsgy741
Template tagscvecve2019totolinkrceroutervkevvuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CPE: cpe:2.3:o:totolink:a3002ru_firmware:*:*:*:*:*:*:*:*

Source: ProjectDiscovery

References

6