Critical severity9.8NVD Advisory· Published Oct 31, 2023· Updated Jun 17, 2026
CVE-2023-46485
CVE-2023-46485
Description
An issue in TOTOlink X6000R V9.4.0cu.852_B20230719 allows a remote attacker to execute arbitrary code via the setTracerouteCfg function of the stecgi.cgi component.
Affected products
3- cpe:2.3:o:totolink:x6000r_firmware:9.4.0cu.852_b20230719:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- 815yang.github.io/2023/10/29/x6000r/TOTOlink%20X6000R%20V9.1.0cu.2350_B20230313-rsetTracerouteCfg/nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.