CVE-2022-48113

A vulnerability in TOTOLINK N200RE_v5 firmware V9.3.5u.6139 allows unauthenticated attackers to access the telnet service via a crafted POST request. Attackers are also able to leverage this vulnerability to login as root via hardcoded credentials.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:totolink:n200re-v5_firmware:9.3.5u.6139:*:*:*:*:*:*:*
cpe:2.3:h:totolink:n200re-v5:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2023-02-02 22:15

Updated : 2024-02-28 19:51


NVD link : CVE-2022-48113

Mitre link : CVE-2022-48113

CVE.ORG link : CVE-2022-48113


JSON object : View

Products Affected

totolink

  • n200re-v5_firmware
  • n200re-v5
CWE
CWE-798

Use of Hard-coded Credentials