CVE-2023-48859
06.12.2023, 15:15
TOTOLINK A3002RU version 2.0.0-B20190902.1958 has a post-authentication RCE due to incorrect access control, allows attackers to bypass front-end security restrictions and execute arbitrary code.Enginsight
Vendor | Product | Version |
---|---|---|
totolink | a3002ru_firmware | 2.0.0-b20190902.1958 |
𝑥
= Vulnerable software versions