First published: Fri Feb 03 2023(Updated: )
TOTOLINK CA300-PoE V6.2c.884 was discovered to contain a command injection vulnerability via the NetDiagPingTimeOut parameter in the setNetworkDiag function.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Totolink Ca300-poe Firmware | =6.2c.884 | |
TOTOLINK CA300-PoE |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this TOTOLINK CA300-PoE vulnerability is CVE-2023-24141.
CVE-2023-24141 has a severity level of critical.
The affected software version for CVE-2023-24141 is TOTOLINK CA300-PoE V6.2c.884.
The vulnerability in TOTOLINK CA300-PoE occurs due to a command injection vulnerability via the NetDiagPingTimeOut parameter in the setNetworkDiag function.
Yes, TOTOLINK CA300-PoE V6.2c.884 is vulnerable to CVE-2023-24141.