CVE-2023-1731
—CVSS 3.1
7.2 high
EPSS
<1%p60
Published
()
Modified
Description
In Meinbergs LTOS versions prior to V7.06.013, the configuration file upload function would not correctly validate the input, which would allow an remote authenticated attacker with high privileges to execute arbitrary commands.
- Vendors
- meinbergglobal
- Products
- lantime firmware
- Weakness
- CWE-434
- Vector
- CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.