CVE-2023-51033: OS Command Injection
Published Dec 22, 2023
·Updated
TOTOlink EX1200L V9.3.5u.6146B20201023 is vulnerable to arbitrary command execution via the cstecgi.cgi setOpModeCfg interface.
Affected Software
2 affected components
All of the following
TOTOLINK Ex1200l Firmware=9.3.5u.6146_b20201023
TOTOLINK EX1200L
Event History
Dec 22, 2023
CVE Published
12:00 AM
Data Sourced
12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-51033?
CVE-2023-51033 is considered critical due to the potential for arbitrary command execution.
2
How do I fix CVE-2023-51033?
To mitigate CVE-2023-51033, upgrade the TOTOlink EX1200L firmware to a version that has addressed this vulnerability.
3
What devices are impacted by CVE-2023-51033?
CVE-2023-51033 specifically affects the TOTOlink EX1200L with firmware version 9.3.5u.6146_B20201023.
4
Can CVE-2023-51033 lead to unauthorized access?
Yes, CVE-2023-51033 can allow attackers to execute arbitrary commands, potentially leading to unauthorized access to the device.
5
Is there a workaround for CVE-2023-51033?
Currently, the only effective solution for CVE-2023-51033 is to update to a secure firmware version.