CVE-2022-46025: Critical severity totolink n200re v5 firmware vulnerability
Totolink N200REV5 V9.3.5u.6255B20211224 is vulnerable to Incorrect Access Control. The device allows remote attackers to obtain Wi-Fi system information, such as Wi-Fi SSID and Wi-Fi password, without logging into the management page.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2022-46025?
CVE-2022-46025 is classified as a high severity vulnerability due to its potential for unauthorized access to sensitive Wi-Fi system information.
How do I fix CVE-2022-46025?
To remediate CVE-2022-46025, users should upgrade to a non-vulnerable firmware version of the Totolink N200RE_V5 device.
What type of information can be accessed through CVE-2022-46025?
CVE-2022-46025 allows remote attackers to obtain sensitive Wi-Fi system information, including the Wi-Fi SSID and password.
Who is affected by CVE-2022-46025?
CVE-2022-46025 affects users of the Totolink N200RE_V5 with firmware version 9.3.5u.6255_B20211224.
Is CVE-2022-46025 a remote vulnerability?
Yes, CVE-2022-46025 is a remote vulnerability that can be exploited without requiring access to the management page.