CVE-2023-5684

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Oct 21, 2023
Updated: May 17, 2024
CWE ID 78

Summary

CVE-2023-5684 is a newly disclosed critical vulnerability impacting the Byzoro Smart S85F Management Platform up to version 20231012. This issue affects an unidentified functionality in the file /importexport.php, resulting in os command injection. An attacker can exploit this remotely, making it a significant security risk. The vulnerability details have been made public, potentially allowing malicious actors to use the exploit. The Vulnerability Database (VDB) has assigned the identifier VDB-243061 to this issue. Unfortunately, efforts to alert the vendor about this disclosure have not resulted in a response.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share