Totolink N200RE_V5 V9.3.5u.6255_B20211224 is vulnerable to Incorrect Access Control. The device allows remote attackers to obtain Wi-Fi system information, such as Wi-Fi SSID and Wi-Fi password, without logging into the management page.
References
| Link | Resource |
|---|---|
| https://pastebin.com/aan5jT40 | Patch Third Party Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
17 Jan 2024, 01:31
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.1 |
| CWE | NVD-CWE-Other | |
| First Time |
Totolink
Totolink n200re V5 Totolink n200re V5 Firmware |
|
| CPE | cpe:2.3:o:totolink:n200re_v5_firmware:9.3.5u.6255_b20211224:*:*:*:*:*:*:* cpe:2.3:h:totolink:n200re_v5:-:*:*:*:*:*:*:* |
|
| References | () https://pastebin.com/aan5jT40 - Patch, Third Party Advisory |
10 Jan 2024, 13:56
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-01-10 08:15
Updated : 2024-01-17 01:31
NVD link : CVE-2022-46025
Mitre link : CVE-2022-46025
CVE.ORG link : CVE-2022-46025
JSON object : View
Products Affected
totolink
- n200re_v5
- n200re_v5_firmware
CWE
