CVE-2023-43138

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Sep 20, 2023
Updated: Sep 22, 2023
CWE ID 77

Summary

CVE-2023-43138 is a vulnerability affecting the TPLINK TL-ER5120G 4.0 2.0.0 Build 210817 Rel.80868n firmware. This issue allows an attacker to inject commands into the system via NAPT rule names after successful authentication, resulting in arbitrary command execution. This can potentially lead to unauthorized access, data theft, or system compromise. Users are advised to update their firmware to a version that addresses this vulnerability to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share