CVE-2023-46423: Command Injection
TOTOLINK X6000R v9.4.0cu.652B20230116 was discovered to contain a remote command execution (RCE) vulnerability via the sub417094 function.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-46423?
CVE-2023-46423 is a remote command execution (RCE) vulnerability found in the TOTOLINK X6000R v9.4.0cu.652_B20230116 firmware.
How severe is CVE-2023-46423?
CVE-2023-46423 is considered critical with a severity rating of 9.8.
What software versions are affected by CVE-2023-46423?
The TOTOLINK X6000R v9.4.0cu.652_B20230116 firmware is affected by CVE-2023-46423.
How can I fix CVE-2023-46423?
To fix CVE-2023-46423, update your TOTOLINK X6000R firmware to a version that is not vulnerable, if available.
Where can I find more information about CVE-2023-46423?
You can find more information about CVE-2023-46423 in the references provided: [link1](https://www.totolink.cn/index.php/home/menu/detail.html?menu_listtpl=download&id=88&ids=36) and [link2](https://github.com/XYIYM/Digging/blob/main/TOTOLINK/X6000R/4/1.md).