CVE-2023-31746

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Jun 14, 2023
Updated: Jan 6, 2025
CWE ID 77

Summary

CVE-2023-31746 is a command injection vulnerability affecting the adslr VW2100 router with firmware version M1DV1.0. This issue allows unauthenticated attackers to inject and execute system commands as the root user, potentially leading to serious compromise of the affected device. Attackers can exploit this vulnerability by sending crafted input to the router, with the potential for gaining full control and access to sensitive information. Organizations and individuals using this specific router model and firmware version are advised to update their firmware or implement other mitigations as soon as possible to protect against potential attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share