Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-54329

Опубликовано: 13 янв. 2026
Источник: nvd
CVSS3: 9.8
EPSS Низкий

Описание

Inbit Messenger 4.6.0 - 4.9.0 contains a remote command execution vulnerability that allows unauthenticated attackers to execute arbitrary commands by exploiting a stack overflow in the messenger's protocol. Attackers can send specially crafted XML packets to port 10883 with a malicious payload to trigger the vulnerability and execute commands with system privileges.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:inbit:inbit_messenger:*:*:*:*:*:*:*:*
Версия от 4.6.0 (включая) до 4.9.0 (включая)

EPSS

Процентиль: 58%
0.00361
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-121
CWE-787

Связанные уязвимости

CVSS3: 9.8
github
24 дня назад

Inbit Messenger 4.6.0 - 4.9.0 contains a remote command execution vulnerability that allows unauthenticated attackers to execute arbitrary commands by exploiting a stack overflow in the messenger's protocol. Attackers can send specially crafted XML packets to port 10883 with a malicious payload to trigger the vulnerability and execute commands with system privileges.

EPSS

Процентиль: 58%
0.00361
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-121
CWE-787