Description
In Meinbergs LTOS versions prior to V7.06.013, the configuration file upload function would not correctly validate the input, which would allow an remote authenticated attacker with high privileges to execute arbitrary commands.
Published: 2023-04-24
Score: 7.2 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-23954 In Meinbergs LTOS versions prior to V7.06.013, the configuration file upload function would not correctly validate the input, which would allow an remote authenticated attacker with high privileges to execute arbitrary commands.
History

Tue, 04 Feb 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

Meinbergglobal Lantime Firmware Lantime M100 Lantime M200 Lantime M300 Lantime M400 Lantime M600 Lantime M900
cve-icon MITRE

Status: PUBLISHED

Assigner: CERTVDE

Published:

Updated: 2025-02-04T19:16:58.162Z

Reserved: 2023-03-30T15:06:41.196Z

Link: CVE-2023-1731

cve-icon Vulnrichment

Updated: 2024-08-02T05:57:25.243Z

cve-icon NVD

Status : Modified

Published: 2023-04-24T14:15:07.640

Modified: 2024-11-21T07:39:47.157

Link: CVE-2023-1731

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses