CVE-2023-24145 | TOTOLINK CA300-PoE 6.2c.884 setUnloadUserData plugin_version command injection (EUVD-2023-28208)
A vulnerability was found in TOTOLINK CA300-PoE 6.2c.884. It has been classified as critical. Affected by this issue is the function setUnloadUserData. Performing manipulation of the argument plugin_version results in command injection.
This vulnerability is known as CVE-2023-24145. Access to the local network is required for this attack. No exploit is available.