Critical severity9.8NVD Advisory· Published Dec 12, 2023· Updated Jun 17, 2026
CVE-2023-46454
CVE-2023-46454
Description
In GL.iNET GL-AR300M routers with firmware v4.3.7, it is possible to inject arbitrary shell commands through a crafted package name in the package information functionality.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- GL.iNET/GL-AR300M routersdescription
- cpe:2.3:o:gl-inet:gl-ar300m_firmware:4.3.7:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- cyberaz0r.info/2023/11/glinet-multiple-vulnerabilities/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.