Incorrect Access Control Vulnerability in TOTOLINK A720R Router
CVE-2023-23064

9.8CRITICAL

Key Information:

Vendor
Totolink
Vendor
CVE Published:
17 February 2023

Summary

The TOTOLINK A720R router, specifically the V4.1.5cu.532_B20210610 version, has been identified to contain an incorrect access control vulnerability. This flaw allows unauthorized users to gain access to restricted areas of the system, potentially compromising sensitive information and network configurations. Users of the affected model should implement appropriate security measures to mitigate the risk associated with this vulnerability.

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Collectors

NVD DatabaseMitre Database
.