Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-2649

Опубликовано: 11 мая 2023
Источник: nvd
CVSS3: 7.2
CVSS3: 8.8
CVSS2: 8.3
EPSS Низкий

Описание

A vulnerability was found in Tenda AC23 16.03.07.45_cn. It has been declared as critical. This vulnerability affects unknown code of the file /bin/ate of the component Service Port 7329. The manipulation of the argument v2 leads to command injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-228778 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:tenda:ac23_firmware:16.03.07.45_cn:*:*:*:*:*:*:*
cpe:2.3:h:tenda:ac23:-:*:*:*:*:*:*:*

EPSS

Процентиль: 77%
0.01028
Низкий

7.2 High

CVSS3

8.8 High

CVSS3

8.3 High

CVSS2

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 7.2
github
больше 2 лет назад

A vulnerability was found in Tenda AC23 16.03.07.45_cn. It has been declared as critical. This vulnerability affects unknown code of the file /bin/ate of the component Service Port 7329. The manipulation of the argument v2 leads to command injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-228778 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 8.8
fstec
почти 2 года назад

Уязвимость компонента Service Port 7329 микропрограммного обеспечения маршрутизаторов Tenda AC23, позволяющая нарушителю выполнить произвольную команду

EPSS

Процентиль: 77%
0.01028
Низкий

7.2 High

CVSS3

8.8 High

CVSS3

8.3 High

CVSS2

Дефекты

CWE-77