An issue was discovered on TRENDnet TV-IP1314PI 5.5.3 200714 devices. Command injection can occur because the system function is used by davinci to unpack language packs without strict filtering of URL strings.
Project Subscriptions
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 20 Jun 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-06-20T15:26:23.066Z
Reserved: 2023-11-24T00:00:00.000Z
Link: CVE-2023-49237
Updated: 2024-08-02T21:53:45.149Z
Status : Modified
Published: 2024-01-09T09:15:42.350
Modified: 2025-06-20T16:15:25.543
Link: CVE-2023-49237
No data.
OpenCVE Enrichment
No data.
Weaknesses