CVE-2023-47611

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Nov 10, 2023
Updated: Nov 16, 2023
CWE ID 269

Summary

CVE-2023-47611 is a newly identified privilege escalation vulnerability affecting several Telit communication modules, including BGS5, EHS5/6/8, PDS5/6/8, ELS61/81, and PLS62. This issue, classified under CWE-269, stems from improper privilege management. A local, low-privileged attacker can exploit this vulnerability to escalate their privileges and gain manufacturer-level access to the targeted system. Successful exploitation may lead to significant security risks, including unauthorized system modifications and data breaches. It is recommended that users apply the vendor-provided patches or updates as soon as they become available.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share