Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-33433


Cross Site Scripting vulnerability in TOTOLINK X2000R before v1.0.0-B20231213.1013 allows a remote attacker to execute arbitrary code via the Guest Access Control parameter in the Wireless Page.


Published

2024-05-14T15:37:38.317

Last Modified

2025-04-09T14:20:01.070

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 4.8 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-233

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System totolink x2000r_firmware < 1.0.0-b20231213.1013 Yes
Hardware totolink x2000r - No

References