Description
A misconfiguration vulnerability exists in the urvpn_client functionality of Milesight UR32L v32.3.0.5. A specially-crafted man-in-the-middle attack can lead to increased privileges. An attacker can perform a man-in-the-middle attack to trigger this vulnerability.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-27646 | A misconfiguration vulnerability exists in the urvpn_client functionality of Milesight UR32L v32.3.0.5. A specially-crafted man-in-the-middle attack can lead to increased privileges. An attacker can perform a man-in-the-middle attack to trigger this vulnerability. |
References
History
No history.
Status: PUBLISHED
Assigner: talos
Published:
Updated: 2024-08-02T10:35:33.191Z
Reserved: 2023-01-25T14:53:13.690Z
Link: CVE-2023-23546
Updated: 2024-07-31T20:15:23.598Z
Status : Modified
Published: 2023-07-06T15:15:11.343
Modified: 2024-11-21T07:46:23.550
Link: CVE-2023-23546
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD