CVE-2023-51015
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Dec 22, 2023
Updated: Dec 27, 2023
CWE ID 94
Summary
CVE-2023-51015 is a newly disclosed vulnerability affecting the TOTOLINX EX1800T v9.1.0cu.2112_B20220316. An attacker can exploit this issue by manipulating the 'enable parameter' in the setDmzCfg interface of the cstecgi .cgi, resulting in arbitrary command execution. Successful exploitation could lead to significant security implications, such as unauthorized access, data theft, or system compromise. It is recommended that users upgrade to a patched version of the firmware as soon as possible to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- TOTOLINK