CVE-2023-45599 - CERT CVE
ID CVE-2023-45599
Sažetak A CWE-646 “Reliance on File Name or Extension of Externally-Supplied File” vulnerability in the “iec61850” functionality of the web application allows a remote authenticated attacker to upload any arbitrary type of file into the device. This issue affects: AiLux imx6 bundle below version imx6_1.0.7-2.
Reference
CVSS
Base: 5.5
Impact: 3.7
Exploitability:1.3
Pristup
VektorSloženostAutentikacija
NETWORK HIGH HIGH
Impact
PovjerljivostCjelovitostDostupnost
LOW LOW LOW
CVSS vektor CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:L
Zadnje važnije ažuriranje 03-03-2025 - 19:36
Objavljeno 05-03-2024 - 12:15