Critical severity9.8NVD Advisory· Published Oct 31, 2023· Updated Jun 17, 2026
CVE-2023-46993
CVE-2023-46993
Description
In TOTOLINK A3300R V17.0.0cu.557_B20221024 when dealing with setLedCfg request, there is no verification for the enable parameter, which can lead to command injection.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:o:totolink:a3300r_firmware:17.0.0cu.557_b20221024:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- github.com/AuroraHaaash/vul_report/blob/main/TOTOLINK%20A3300R-Command%20Injection/readme.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.