CVE-2023-46563: Critical severity totolink x2000r firmware vulnerability
Published Oct 25, 2023
·Updated
TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formIpQoS.
Affected Software
2 affected components
All of the following
TOTOLINK X2000r Firmware=1.0.0-b20230221.0948
TOTOLINK X2000R
Event History
Oct 25, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·06:17 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-46563?
The severity of CVE-2023-46563 is critical with a severity value of 9.8.
2
What is the affected software for CVE-2023-46563?
The affected software for CVE-2023-46563 is Totolink X2000r Firmware version 1.0.0-b20230221.0948.
3
How can the stack overflow vulnerability in Totolink X2000r Firmware be exploited?
The stack overflow vulnerability in Totolink X2000r Firmware can be exploited through the function formIpQoS.
4
What is the Common Weakness Enumeration (CWE) identifier for CVE-2023-46563?
The Common Weakness Enumeration (CWE) identifier for CVE-2023-46563 is CWE-787.
5
Where can I find more information about CVE-2023-46563?
You can find more information about CVE-2023-46563 at the following references: [Reference 1](https://totolink.cn/home/menu/detail.html?menu_listtpl=download&id=85&ids=36), [Reference 2](https://github.com/XYIYM/Digging/blob/main/TOTOLINK/X2000R/7/1.md).