CVE-2024-32334: XSS
Published Apr 18, 2024
·Updated
TOTOLINK N300RT V2.1.8-B20201030.1539 contains a Store Cross-site scripting (XSS) vulnerability in IP/Port Filtering under the Firewall Page.
Affected Software
3 affected components
TOTOLINK N300RT
All of the following
TOTOLINK N300rt Firmware=2.1.8-b20201030.1539
TOTOLINK N300RT
Event History
Apr 18, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-32334?
CVE-2024-32334 is classified as a moderate severity vulnerability due to its potential for cross-site scripting attacks.
2
How do I fix CVE-2024-32334?
To fix CVE-2024-32334, update the TOTOLINK N300RT firmware to the latest available version.
3
What type of vulnerability is CVE-2024-32334?
CVE-2024-32334 is a Store Cross-site Scripting (XSS) vulnerability in the IP/Port Filtering feature.
4
Which devices are affected by CVE-2024-32334?
CVE-2024-32334 affects the TOTOLINK N300RT router specifically Version V2.1.8-B20201030.1539.
5
What can an attacker achieve with CVE-2024-32334?
An attacker exploiting CVE-2024-32334 can inject malicious scripts into the web interface affecting logged-in users.