A vulnerability in TOTOLINK N200RE_v5 firmware V9.3.5u...
Critical severity
Unreviewed
Published
Feb 3, 2023
to the GitHub Advisory Database
•
Updated Feb 18, 2023
Description
Published by the National Vulnerability Database
Feb 2, 2023
Published to the GitHub Advisory Database
Feb 3, 2023
Last updated
Feb 18, 2023
A vulnerability in TOTOLINK N200RE_v5 firmware V9.3.5u.6139 allows unauthenticated attackers to access the telnet service via a crafted POST request. Attackers are also able to leverage this vulnerability to login as root via hardcoded credentials.
References