CVE-2023-24151 | TOTOLINK T8 4.1.5cu MQTT Packet recvSlaveCloudCheckStatus ip command injection (EUVD-2023-28214)
A vulnerability identified as critical has been detected in TOTOLINK T8 4.1.5cu. The impacted element is the function recvSlaveCloudCheckStatus of the component MQTT Packet Handler. This manipulation of the argument ip causes command injection.
This vulnerability is tracked as CVE-2023-24151. The attack is only possible within the local network. No exploit exists.