AuroraHaaash

1 exploit Active since Oct 2023
CVE-2023-46993 WRITEUP CRITICAL WRITEUP
TOTOLINK A3300R V17.0.0cu.557_B20221024 - Command Injection
In TOTOLINK A3300R V17.0.0cu.557_B20221024 when dealing with setLedCfg request, there is no verification for the enable parameter, which can lead to command injection.
CVSS 9.8