First published: Wed Jan 24 2024(Updated: )
An issue discovered in TOTOLINK X6000R v9.4.0cu.852_B20230719 allows attackers to run arbitrary commands via the sub_415C80 function.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Totolink X6000R AX3000 | =9.4.0cu.852_b20230719 | |
Totolink X6000R AX3000 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-52038 is considered a high-severity vulnerability due to its ability to allow attackers to run arbitrary commands.
To fix CVE-2023-52038, update the TOTOLINK X6000R firmware to version 9.4.0cu.852_B20230719 or later.
CVE-2023-52038 facilitates command injection attacks that can potentially compromise the device.
CVE-2023-52038 affects the TOTOLINK X6000R with firmware version 9.4.0cu.852_B20230719.
Yes, CVE-2023-52038 can be exploited remotely by attackers with network access to the device.