First published: Tue May 14 2024(Updated: )
Cross Site Scripting vulnerability in TOTOLINK X2000R before v1.0.0-B20231213.1013 allows a remote attacker to execute arbitrary code via the Guest Access Control parameter in the Wireless Page.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Totolink X2000R Firmware | <1.0.0-B20231213.1013 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-33433 is classified as a high-severity Cross Site Scripting vulnerability.
To mitigate CVE-2024-33433, update TOTOLINK X2000R to version 1.0.0-B20231213.1013 or later.
CVE-2024-33433 allows remote attackers to execute arbitrary code via the Guest Access Control parameter.
CVE-2024-33433 affects the TOTOLINK X2000R router running versions prior to 1.0.0-B20231213.1013.
Details about CVE-2024-33433 can usually be found in security advisories or the vendor's update notes.