Description
An authentication bypass vulnerability exists in the httpd nvram.cgi functionality of Yifan YF325 v1.0_20221108. A specially crafted network request can lead to arbitrary command execution. An attacker can send a network request to trigger this vulnerability.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-28497 | An authentication bypass vulnerability exists in the httpd nvram.cgi functionality of Yifan YF325 v1.0_20221108. A specially crafted network request can lead to arbitrary command execution. An attacker can send a network request to trigger this vulnerability. |
References
History
No history.
Status: PUBLISHED
Assigner: talos
Published:
Updated: 2024-08-02T10:56:04.167Z
Reserved: 2023-06-12T16:00:05.976Z
Link: CVE-2023-24479
Updated: 2024-08-02T10:56:04.167Z
Status : Modified
Published: 2023-10-11T16:15:12.640
Modified: 2024-11-21T07:47:56.550
Link: CVE-2023-24479
No data.
OpenCVE Enrichment
No data.
EUVD