CVE-2023-28391
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Nov 14, 2023
Updated: Nov 17, 2023
CWE ID 119
CWE ID 787
Summary
CVE-2023-28391 is a memory corruption vulnerability affecting the HTTP Server header parsing functionality in Weston Embedded uC-HTTP v3.01.01. Maliciously crafted network packets can exploit this flaw, allowing attackers to execute arbitrary code. The vulnerability could potentially be exploited through a remote attack, posing a significant risk to systems utilizing the affected software. It is crucial for users to apply the necessary patches or updates to mitigate this threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- Silabs