Multisuns EasyLog web+ has a code injection vulnerability. An unauthenticated remote attacker can exploit this vulnerability to inject code and access the system to perform arbitrary system operations or disrupt service.
Subscriptions
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-52442 | Multisuns EasyLog web+ has a code injection vulnerability. An unauthenticated remote attacker can exploit this vulnerability to inject code and access the system to perform arbitrary system operations or disrupt service. |
Fixes
Solution
Please contact Multisuns for fixing method.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.twcert.org.tw/tw/cp-132-7605-2d86d-1.html |
|
History
No history.
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2024-08-02T21:30:35.243Z
Reserved: 2023-11-16T03:52:23.444Z
Link: CVE-2023-48390
No data.
Status : Modified
Published: 2023-12-15T09:15:08.950
Modified: 2024-11-21T08:31:37.363
Link: CVE-2023-48390
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD