CVE-2023-52026: OS Command Injection
Published Jan 12, 2024
·Updated
TOTOlink EX1800T V9.1.0cu.2112B20220316 was discovered to contain a remote command execution (RCE) vulnerability via the telnetenabled parameter of the setTelnetCfg interface
Affected Software
2 affected components
All of the following
TOTOLINK Ex1800t Firmware=9.1.0cu.2112_b20220316
TOTOLINK EX1800T
Event History
Jan 12, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-52026?
CVE-2023-52026 is classified as a remote command execution vulnerability, indicating a high severity risk for affected systems.
2
How do I fix CVE-2023-52026?
To remediate CVE-2023-52026, update the TOTOlink EX1800T firmware to a version that does not contain this vulnerability.
3
What devices are affected by CVE-2023-52026?
CVE-2023-52026 specifically affects the TOTOlink EX1800T firmware version 9.1.0cu.2112_B20220316.
4
What is the nature of the vulnerability CVE-2023-52026?
CVE-2023-52026 allows attackers to execute arbitrary commands remotely through the telnet_enabled parameter.
5
Are there any known exploits for CVE-2023-52026?
Yes, there are known exploits that leverage the remote command execution vulnerability in CVE-2023-52026.