CVE-2023-48243
CVSS 3.1 Score 8.8 of 10 (high)
Details
Published Jan 10, 2024
Updated: Jan 16, 2024
CWE ID 22
Summary
CVE-2023-48243 is a newly identified vulnerability that enables remote attackers to upload malicious files to any location on the system using a specially crafted HTTP request. The flaw is significant because it allows the attacker to execute code with root privileges once the file is uploaded, resulting in a dangerous remote code execution (RCE) attack. This vulnerability poses a serious threat as it can be exploited to gain unauthorized access and control over the affected device.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- Bosch