CVE-2022-28493: Critical severity totolink cp900 firmware vulnerability
Published Mar 23, 2023
·Updated
A vulnerability in TOTOLINK CP900 V6.3c.566 allows attackers to start the Telnet service,
Affected Software
2 affected components
TOTOLINK Cp900 Firmware=6.3c.566
TOTOLINK CP900
Event History
Mar 23, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2022-28493.
2
What is the severity of CVE-2022-28493?
The severity of CVE-2022-28493 is critical with a CVSS score of 9.8.
3
Which TOTOLINK device is affected by CVE-2022-28493?
The TOTOLINK CP900 V6.3c.566 firmware is affected by CVE-2022-28493.
4
What can attackers do with CVE-2022-28493?
Attackers can start the Telnet service using CVE-2022-28493.
5
Is TOTOLINK CP900 V6.3c.566 completely vulnerable to CVE-2022-28493?
No, TOTOLINK CP900 V6.3c.566 is only vulnerable to starting the Telnet service.