cbcvebase.
CVE-2023-48859
published 2023-12-06

CVE-2023-48859: TOTOLINK A3002RU version 2.0.0-B20190902.1958 has a post-authentication RCE due to incorrect access control, allows attackers to bypass front-end security…

high8.8CVSS 3.1
AVNACLPRLUINSUCHIHAH
TOTOLINK A3002RU version 2.0.0-B20190902.1958 has a post-authentication RCE due to incorrect access control, allows attackers to bypass front-end security restrictions and execute arbitrary code.

Affected

1 ranges
VendorProductVersion rangeFixed in
totolinka3002ru_firmware