CVE-2023-33284

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Jun 7, 2023
Updated: Jan 7, 2025
CWE ID 502

Summary

CVE-2023-33284 is a Remote Code Execution vulnerability affecting Marval MSM versions 14.19.0.12476 and 15.0. An intruder, authenticated as any user, can exploit this flaw to execute malicious code in the context of the web server, posing a significant risk to the security of affected systems. This weakness could potentially lead to unauthorized access, data theft, or system takeover. Users are advised to apply the available patches promptly to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Modular Switchgear Monitoring

Affected Vendors

  • Hitachi Energy