First published: Wed Oct 25 2023(Updated: )
TOTOLINK X6000R v9.4.0cu.652_B20230116 was discovered to contain a remote command execution (RCE) vulnerability via the sub_415730 function.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Totolink X6000R AX3000 | =9.4.0cu.652_b20230116 | |
Totolink X6000R AX3000 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-46419 is a remote command execution (RCE) vulnerability found in TOTOLINK X6000R v9.4.0cu.652_B20230116.
CVE-2023-46419 has a severity rating of 9.8 (critical).
Yes, CVE-2023-46419 can allow unauthorized remote access to the TOTOLINK X6000R device.
To fix CVE-2023-46419, it is recommended to update the TOTOLINK X6000R firmware to version 9.4.0cu.652_B20230116 or newer.
More information about CVE-2023-46419 can be found at the following references: [Link 1](https://www.totolink.cn/index.php/home/menu/detail.html?menu_listtpl=download&id=88&ids=36) and [Link 2](https://github.com/XYIYM/Digging/blob/main/TOTOLINK/X6000R/6/1.md).