CVE-2023-24143 | TOTOLINK CA300-PoE 6.2c.884 setNetworkDiag NetDiagTracertHop command injection (EUVD-2023-28206)
A vulnerability described as critical has been identified in TOTOLINK CA300-PoE 6.2c.884. This affects the function setNetworkDiag. The manipulation of the argument NetDiagTracertHop results in command injection.
This vulnerability is cataloged as CVE-2023-24143. The attack must originate from the local network. There is no exploit available.