CVE-2023-26978 | TOTOLINK A7100RU 7.4cu.2313_B20191024 Setting /setting/setWanIeCfg pppoeAcName command injection (EUVD-2023-30768)
A vulnerability, which was classified as critical, has been found in TOTOLINK A7100RU 7.4cu.2313_B20191024. Affected by this vulnerability is an unknown functionality of the file /setting/setWanIeCfg of the component Setting Handler. This manipulation of the argument pppoeAcName causes command injection.
This vulnerability is tracked as CVE-2023-26978. The attack is only possible within the local network. No exploit exists.