CVE-2024-0570: Totolink N350RT Setting cstecgi.cgi access control
A vulnerability classified as critical was found in Totolink N350RT 9.3.5u.6265. This vulnerability affects unknown code of the file /cgi-bin/cstecgi.cgi of the component Setting Handler. The manipulation leads to improper access controls. The attack can be initiated remotely. It is recommended to upgrade the affected component. VDB-250786 is the identifier assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-0570?
CVE-2024-0570 is classified as a critical vulnerability.
How does CVE-2024-0570 affect the Totolink N350RT router?
CVE-2024-0570 affects the improper access controls within the /cgi-bin/cstecgi.cgi file.
Can CVE-2024-0570 be exploited remotely?
Yes, CVE-2024-0570 can be exploited remotely, making it particularly concerning.
What version of firmware is affected by CVE-2024-0570?
The vulnerability CVE-2024-0570 specifically affects Totolink N350RT firmware version 9.3.5u.6265.
How can I mitigate the risks associated with CVE-2024-0570?
To mitigate CVE-2024-0570, it is advised to update to the latest firmware version provided by the vendor.