CVE-2022-48066: Critical severity totolink a3300r firmware vulnerability
Published Jan 27, 2023
·Updated
An issue in the component global.so of Totolink A830R V4.1.2cu.5182 allows attackers to bypass authentication via a crafted cookie.
Affected Software
4 affected components
TOTOLINK A830r Firmware=4.1.2cu.5182
TOTOLINK A830R
All of the following
TOTOLINK A830r Firmware=4.1.2cu.5182
TOTOLINK A830R
Event History
Jan 27, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2022-48066.
2
What is the severity of CVE-2022-48066?
The severity of CVE-2022-48066 is critical with a score of 9.8.
3
What is the affected software for CVE-2022-48066?
The affected software for CVE-2022-48066 is Totolink A830R V4.1.2cu.5182.
4
How does CVE-2022-48066 allow attackers to bypass authentication?
CVE-2022-48066 allows attackers to bypass authentication via a crafted cookie in the component global.so of Totolink A830R V4.1.2cu.5182.
5
Is Totolink A830R V4.1.2cu.5182 vulnerable?
Yes, Totolink A830R V4.1.2cu.5182 is vulnerable to CVE-2022-48066.