CVE-2023-46415: Command Injection
Published Oct 25, 2023
·Updated
TOTOLINK X6000R v9.4.0cu.652B20230116 was discovered to contain a remote command execution (RCE) vulnerability via the sub41E588 function.
Affected Software
2 affected components
All of the following
TOTOLINK X6000R Firmware=9.4.0cu.652_b20230116
TOTOLINK X6000R
Event History
Oct 25, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2023-46415?
CVE-2023-46415 is a remote command execution (RCE) vulnerability in TOTOLINK X6000R v9.4.0cu.652_B20230116 firmware.
2
How severe is CVE-2023-46415?
CVE-2023-46415 has a severity rating of 9.8, making it a critical vulnerability.
3
How does CVE-2023-46415 impact TOTOLINK X6000R firmware version 9.4.0cu.652_B20230116?
CVE-2023-46415 allows remote attackers to execute arbitrary commands on TOTOLINK X6000R v9.4.0cu.652_B20230116 firmware.
4
Is TOTOLINK X6000R firmware version 9.4.0cu.652_B20230116 vulnerable to CVE-2023-46415?
Yes, TOTOLINK X6000R firmware version 9.4.0cu.652_B20230116 is vulnerable to CVE-2023-46415.
5
How can I fix CVE-2023-46415?
There is currently no official fix available for CVE-2023-46415. It is recommended to update to a patched firmware version when released by the vendor.