PT-2024-1062 · Totolink · Totolink N350Rt

Jylsec

·

Published

2024-01-08

·

Updated

2024-05-17

·

CVE-2023-7218

CVSS v2.0

8.3

High

VectorAV:N/AC:L/Au:M/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Totolink N350RT version 9.3.5u.6139 B202012
Description The issue is related to a stack-based buffer overflow in the loginAuth function of the /cgi-bin/cstecgi.cgi file, which can be exploited remotely. This is due to the manipulation of the password argument. The exploitation of this issue may allow a remote attacker to execute arbitrary code.
Recommendations For Totolink N350RT version 9.3.5u.6139 B202012, as a temporary workaround, consider disabling the loginAuth function until a patch is available. Restrict access to the /cgi-bin/cstecgi.cgi file to minimize the risk of exploitation. Avoid using the password argument in the affected API endpoint until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Stack Overflow

Weakness Enumeration

Related Identifiers

BDU:2024-00293
CVE-2023-7218

Affected Products

Totolink N350Rt