An authentication bypass vulnerability exists in the httpd nvram.cgi functionality of Yifan YF325 v1.0_20221108. A specially crafted network request can lead to arbitrary command execution. An attacker can send a network request to trigger this vulnerability.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: talos
Published: 2023-10-11T15:14:31.297Z
Updated: 2024-08-02T10:56:04.167Z
Reserved: 2023-06-12T16:00:05.976Z
Link: CVE-2023-24479
Vulnrichment
Updated: 2024-08-02T10:56:04.167Z
NVD
Status : Modified
Published: 2023-10-11T16:15:12.640
Modified: 2024-11-21T07:47:56.550
Link: CVE-2023-24479
Redhat
No data.