TOTOLINK A3002RU version 2.0.0-B20190902.1958 has a post-authentication RCE due to incorrect access control, allows attackers to bypass front-end security restrictions and execute arbitrary code.
2023-12-06T15:15:06.967
2024-11-21T08:32:33.563
Modified
CVSSv3.1: 8.8 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | totolink | a3002ru_firmware | 2.0.0-b20190902.1958 | Yes |
Hardware | totolink | a3002ru | - | No |