CVE-2023-43138
CVSS 3.1 Score 8.8 of 10 (high)
Details
Published Sep 20, 2023
Updated: Sep 22, 2023
CWE ID 77
Summary
CVE-2023-43138 is a vulnerability affecting the TPLINK TL-ER5120G 4.0 2.0.0 Build 210817 Rel.80868n firmware. This issue allows an attacker to inject commands into the system via NAPT rule names after successful authentication, resulting in arbitrary command execution. This can potentially lead to unauthorized access, data theft, or system compromise. Users are advised to update their firmware to a version that addresses this vulnerability to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- TP-LINK Technologies Co Ltd