CVE-2023-46558
CVSS 3.1 Score 9.8 of 10 (high)
Details
Summary
CVE-2023-46558 is a newly disclosed vulnerability affecting the TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web firmware. This issue involves a stack overflow, specifically within the function formMapDelDevice. A stack overflow occurs when a program tries to store more data in a stack frame than it can hold, leading to unintended behavior, potential crashes, or worse, arbitrary code execution. In this case, an attacker could potentially exploit this vulnerability to gain unauthorized access or cause denial of service to the affected device. It is highly recommended that users update their firmware to the latest version to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- TOTOLINK