CVE-2023-48243

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Jan 10, 2024
Updated: Jan 16, 2024
CWE ID 22

Summary

CVE-2023-48243 is a newly identified vulnerability that enables remote attackers to upload malicious files to any location on the system using a specially crafted HTTP request. The flaw is significant because it allows the attacker to execute code with root privileges once the file is uploaded, resulting in a dangerous remote code execution (RCE) attack. This vulnerability poses a serious threat as it can be exploited to gain unauthorized access and control over the affected device.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share