CVE-2023-3331

CVSS 3.1 Score 5.4 of 10 (medium)

Details

Published Jun 28, 2023
Updated: Jul 5, 2023
CWE ID 22

Summary

CVE-2023-3331 is a vulnerability affecting multiple NEC Corporation Aterm models, including WG2600HP2, WG2600HP, WG2200HP, WG1800HP2, WG1800HP, WG1400HP, WG600HP, WG300HP, WF300HP, WR9500N, WR9300N, WR8750N, WR8700N, WR8600N, WR8370N, and WR8170N. This issue is caused by an improper limitation of a pathname to a restricted directory, enabling an attacker to delete specific files within the product. Unauthorized file deletion poses a significant risk to system stability and data security. Users are strongly advised to apply the available patches or updates as soon as possible to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share