CVE-2024-32327: XSS
Published Apr 18, 2024
·Updated
TOTOLINK N300RT V2.1.8-B20201030.1539 contains a Store Cross-site scripting (XSS) vulnerability in Port Forwarding under the Firewall Page.
Affected Software
3 affected components
TOTOLINK N300RT=V2.1.8-B20201030.1539
All of the following
TOTOLINK N300rt Firmware=2.1.8-b20201030.1539
TOTOLINK N300RT
Event History
Apr 18, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-32327?
CVE-2024-32327 is classified as a medium severity vulnerability due to its potential for exploiting user sessions through cross-site scripting.
2
How do I fix CVE-2024-32327?
To fix CVE-2024-32327, update the TOTOLINK N300RT firmware to a version that addresses the XSS vulnerability.
3
Where is the CVE-2024-32327 vulnerability located?
CVE-2024-32327 exists in the Port Forwarding section under the Firewall Page of the TOTOLINK N300RT firmware.
4
What type of vulnerability is CVE-2024-32327?
CVE-2024-32327 is a Store Cross-site scripting (XSS) vulnerability.
5
What impact can CVE-2024-32327 have on users?
CVE-2024-32327 can allow attackers to inject malicious scripts, potentially compromising user credentials and session data.