Description
A command injection vulnerability exists in the IOCTL that manages OTA updates. A specially crafted command can lead to command execution as the root user. An attacker can make authenticated requests to trigger this vulnerability.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-58563 | A command injection vulnerability exists in the IOCTL that manages OTA updates. A specially crafted command can lead to command execution as the root user. An attacker can make authenticated requests to trigger this vulnerability. |
References
History
Fri, 11 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 11 Feb 2025 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Owletcare
Owletcare cam Owletcare cam 2 Owletcare cam 2 Firmware Owletcare cam Firmware Throughtek Throughtek kalay Platform |
|
| Weaknesses | CWE-77 | |
| CPEs | cpe:2.3:a:throughtek:kalay_platform:-:*:*:*:*:*:*:* cpe:2.3:h:owletcare:cam:-:*:*:*:*:*:*:* cpe:2.3:h:owletcare:cam_2:-:*:*:*:*:*:*:* cpe:2.3:o:owletcare:cam_2_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:owletcare:cam_firmware:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Owletcare
Owletcare cam Owletcare cam 2 Owletcare cam 2 Firmware Owletcare cam Firmware Throughtek Throughtek kalay Platform |
Status: PUBLISHED
Assigner: Bitdefender
Published:
Updated: 2024-08-02T08:28:21.329Z
Reserved: 2023-11-27T14:22:33.541Z
Link: CVE-2023-6321
Updated: 2024-08-02T08:28:21.329Z
Status : Analyzed
Published: 2024-05-15T13:15:25.230
Modified: 2025-02-11T21:32:39.830
Link: CVE-2023-6321
No data.
OpenCVE Enrichment
No data.
EUVD