Versions of INEA ME RTU firmware 3.36b and prior are vulnerable to operating system (OS) command injection, which could allow remote code execution.




Advisories
Source ID Title
EUVD EUVD EUVD-2023-39761 Versions of INEA ME RTU firmware 3.36b and prior are vulnerable to operating system (OS) command injection, which could allow remote code execution.
Fixes

Solution

INEA recommends users to upgrade ME RTU to firmware version 3.37 https://www.inea.si/en/telemetrija-in-m2m-produkti/mertu-en/ .


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2024-08-29T20:44:07.383Z

Reserved: 2023-06-26T18:46:05.828Z

Link: CVE-2023-35762

cve-icon Vulnrichment

Updated: 2024-08-02T16:30:44.630Z

cve-icon NVD

Status : Modified

Published: 2023-11-20T17:15:13.357

Modified: 2024-11-21T08:08:39.463

Link: CVE-2023-35762

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.