ZeroHour

CVE-2023-1731

CVSS 3.1
7.2 high
EPSS
<1%p60
Published
()
Modified
Description

In Meinbergs LTOS versions prior to V7.06.013, the configuration file upload function would not correctly validate the input, which would allow an remote authenticated attacker with high privileges to execute arbitrary commands.

Vendors
meinbergglobal
Products
lantime firmware
Weakness
CWE-434
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.