PT-2024-24510 · Totolink · Totolink N300Rt

Published

2024-04-18

·

Updated

2024-07-03

·

CVE-2024-32327

CVSS v3.1

5.5

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions TOTOLINK N300RT version V2.1.8-B20201030.1539
Description The issue is related to a Store Cross-site scripting (XSS) vulnerability. This vulnerability is located in the Port Forwarding section under the Firewall Page.
Recommendations For TOTOLINK N300RT version V2.1.8-B20201030.1539, consider disabling the Port Forwarding feature under the Firewall Page as a temporary workaround until a patch is available. Restrict access to the Firewall Page to minimize the risk of exploitation. Avoid using the Port Forwarding section until the issue is resolved.

Exploit

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2024-32327

Affected Products

Totolink N300Rt