CVE-2023-36954
CVSS 3.1 Score 9.8 of 10 (high)
Details
Summary
CVE-2023-36954 is a newly disclosed vulnerability affecting the TOTOLINK CP300+ V5.2cu.7594_B20200910 and older firmware versions. This issue permits an attacker to inject malicious commands through specific inputs, potentially leading to unauthorized system access or data manipulation. Successful exploitation of this vulnerability could result in significant security implications for affected installations. Organizations utilizing the TOTOLINK CP300+ router model are encouraged to update their firmware as soon as a patch becomes available to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- TOTOLINK