CVE-2023-50614

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Jan 18, 2024
Updated: Jan 25, 2024
CWE ID 319

Summary

CVE-2023-50614 is a newly-discovered vulnerability affecting the EBYTE E880-IR01-V1.1 device. This issue permits an attacker to extract sensitive information by crafting a maliciously designed POST request and targeting the /cgi-bin/luci endpoint. Successful exploitation could lead to unauthorized access to confidential data, posing a significant threat to network security. Users are urged to apply the necessary patches or updates as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share