8.8
CVSSv3

CVE-2023-48859

Published: 06/12/2023 Updated: 12/12/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

TOTOLINK A3002RU version 2.0.0-B20190902.1958 has a post-authentication RCE due to incorrect access control, allows malicious users to bypass front-end security restrictions and execute arbitrary code.

Vulnerable Product Search on Vulmon Subscribe to Product

totolink a3002ru_firmware 2.0.0-b20190902.1958