A CWE-494 Download of Code Without Integrity Check vulnerability exists that could allow
modified firmware to be uploaded when an authorized admin user begins a firmware update
procedure which could result in full control over the device.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-58251 | A CWE-494 Download of Code Without Integrity Check vulnerability exists that could allow modified firmware to be uploaded when an authorized admin user begins a firmware update procedure which could result in full control over the device. |
Tue, 30 Sep 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: schneider
Published:
Updated: 2025-09-30T14:33:42.586Z
Reserved: 2023-11-07T10:54:44.542Z
Link: CVE-2023-5984
Updated: 2024-08-02T08:14:25.140Z
Status : Modified
Published: 2023-11-15T04:15:19.043
Modified: 2024-11-21T08:42:55.290
Link: CVE-2023-5984
No data.
OpenCVE Enrichment
No data.
EUVD