CVE-2023-43141

CRITICAL

TOTOLINK A3700R and N600R Firmware - Improper Access Control

Title source: llm
STIX 2.1

Description

TOTOLINK A3700R V9.1.2u.6134_B20201202 and N600R V5.3c.5137 are vulnerable to Incorrect Access Control.

References (2)

Core 2
Core References

Scores

CVSS v3 9.8
EPSS 0.0010
EPSS Percentile 26.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact total

Details

CWE
CWE-284
Status published
Products (2)
totolink/a3700r_firmware 9.1.2u.6134_b20201202
totolink/n600r_firmware 4.3.0cu.7647_b20210106
Published Sep 25, 2023
Tracked Since Feb 18, 2026