CVE-2023-7163

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Dec 28, 2023
Updated: Jan 4, 2024
CWE ID 20

Summary

CVE-2023-7163 is a newly discovered vulnerability affecting D-Link D-View 8 v2.0.2.89 and older versions. This issue grants attackers the ability to manipulate the probe inventory of the D-View service. Consequences of this vulnerability include the disclosure of information from other probes, denial of service conditions due to inventory overflow, and potential execution of tasks on other probes. Attackers can exploit this vulnerability without requiring authentication or user interaction, posing a significant threat to affected networks. Organizations using D-Link D-View 8 are urged to apply the necessary patches or updates as soon as possible to mitigate the risks associated with this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share