CVE-2023-38563
CVSS 3.1 Score 8.8 of 10 (high)
Details
Summary
CVE-2023-38563 is a vulnerability affecting Archer C1200 and Archer C9 routers. Prior versions of their firmware, specifically 'Archer C1200(JP)_V2_230508' for C1200 and 'Archer C9(JP)_V3_230508' for C9, are susceptible to remote command injection. An attacker near the network can exploit this flaw to execute arbitrary OS commands without requiring authentication. This poses a significant risk, as successful exploitation could lead to unauthorized access, data theft, or other malicious activities. Users are advised to update their routers to the latest firmware versions as soon as possible to mitigate this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- TP-LINK Technologies Co Ltd
Advisories, Assessments, and Mitigations
Prioritize, Pinpoint, and Act to Prevent Vulnerability Exploits with Recorded Future
- Gain complete coverage of your cyber, third party, and physical attack surface
- Proactively mitigate threats before they turn into costly attacks
- Make fast, effective, data-driven decisions