The vulnerability allows a remote attacker to upload arbitrary files in all paths of the system under the context of the application OS user (“root”) via a crafted HTTP request.
By abusing this vulnerability, it is possible to obtain remote code execution (RCE) with root privileges on the device.
By abusing this vulnerability, it is possible to obtain remote code execution (RCE) with root privileges on the device.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-52312 | The vulnerability allows a remote attacker to upload arbitrary files in all paths of the system under the context of the application OS user (“root”) via a crafted HTTP request. By abusing this vulnerability, it is possible to obtain remote code execution (RCE) with root privileges on the device. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 17 Jun 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: bosch
Published:
Updated: 2025-06-17T20:59:12.299Z
Reserved: 2023-11-13T13:44:23.702Z
Link: CVE-2023-48243
Updated: 2024-08-02T21:23:39.206Z
Status : Modified
Published: 2024-01-10T11:15:08.777
Modified: 2024-11-21T08:31:17.553
Link: CVE-2023-48243
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD