CVE-2023-48192
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Nov 20, 2023
Updated: Nov 29, 2023
CWE ID 94
Summary
CVE-2023-48192 is a vulnerability affecting the TOTOlink A3700R v.9.1.2u.6134_B20201202. This issue enables a local attacker to execute arbitrary code through the setTracerouteCfg function, potentially leading to significant security risks and system compromise. The vulnerability can be exploited by an attacker with local access, making it a potential threat for organizations and individuals using the affected device. It is recommended that users update their software to the latest version to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- TOTOLINK