TOTOLink A3600R V4.1.2cu.5182_B20201102 was discovered to contain a command injection vulnerability via the username parameter in /cstecgi.cgi.Referenceshttps://github.com/Darry-lang1/vuln/blob/main/TOTOLINK/A3600R/1/readme.md