Vulnerability Details CVE-2023-46992
TOTOLINK A3300R V17.0.0cu.557_B20221024 is vulnerable to Incorrect Access Control. Attackers are able to reset serveral critical passwords without authentication by visiting specific pages.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 35.5%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2023-46992
-
cpe:2.3:h:totolink:a3300r:-
-
cpe:2.3:o:totolink:a3300r_firmware:17.0.0cu.557_b20221024