Lucene search

K
nvd[email protected]NVD:CVE-2023-51033
HistoryDec 22, 2023 - 7:15 p.m.

CVE-2023-51033

2023-12-2219:15:09
CWE-78
web.nvd.nist.gov
3
totolink
ex1200l
vulnerability
setopmodecfg
arbitrary command execution

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS

0.004

Percentile

75.2%

TOTOlink EX1200L V9.3.5u.6146_B20201023 is vulnerable to arbitrary command execution via the cstecgi.cgi setOpModeCfg interface.

Affected configurations

Nvd
Node
totolinkex1200lMatch-
AND
totolinkex1200l_firmwareMatch9.3.5u.6146_b20201023
VendorProductVersionCPE
totolinkex1200l-cpe:2.3:h:totolink:ex1200l:-:*:*:*:*:*:*:*
totolinkex1200l_firmware9.3.5u.6146_b20201023cpe:2.3:o:totolink:ex1200l_firmware:9.3.5u.6146_b20201023:*:*:*:*:*:*:*

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS

0.004

Percentile

75.2%

Related for NVD:CVE-2023-51033