GL.iNET Devices Command Injection (CVE-2023-31472)

Related Vulnerabilities: CVE-2023-31472  

Check Point Reference: CPAI-2023-1613 Date Published: 25 Mar 2024 Severity: High Last Updated: Monday 25 March, 2024 Source: Industry Reference:CVE-2023-31472
Protection Provided by:

Security Gateway
R81, R80, R77, R75

Who is Vulnerable? GL.iNET GL-S20 up to and excluding 3.216
GL.iNET GL-X3000 up to and excluding 3.216
GL.iNET GL-MT3000 up to and excluding 3.216
GL.iNET GL-MT2500 up to and excluding 3.216
GL.iNET GL-MT2500A up to and excluding 3.216
GL.iNET GL-AXT1800 up to and excluding 3.216
GL.iNET GL-AL300 up to and excluding 3.216
GL.iNET GL-AX1800 up to and excluding 3.216
GL.iNET GL-SFT1200 up to and excluding 3.216
GL.iNET GL-MT1300 up to and excluding 3.216
GL.iNET GL-E750 up to and excluding 3.216
GL.iNET GL-MV1000 up to and excluding 3.216
GL.iNET GL-MV1000W up to and excluding 3.216
GL.iNET GL-S10 up to and excluding 3.216
GL.iNET GL-S200 up to and excluding 3.216
GL.iNET GL-S1300 up to and excluding 3.216
GL.iNET GL-SF1200 up to and excluding 3.216
GL.iNET GL-BL1300 up to and excluding 3.216
GL.iNET GL-B2200 up to and excluding 3.216
GL.iNET GL-AP1300 up to and excluding 3.216
GL.iNET GL-AP1300LTE up to and excluding 3.216
GL.iNET GL-X1200 up to and excluding 3.216
GL.iNET GL-X750 up to and excluding 3.216
GL.iNET GL-X300B up to and excluding 3.216
GL.iNET GL-XE300 up to and excluding 3.216
GL.iNET GL-AR750S up to and excluding 3.216
GL.iNET GL-AR750 up to and excluding 3.216
GL.iNET GL-MIFI up to and excluding 3.216
GL.iNET GL-MT300N up to and excluding 3.216
GL.iNET GL-AR300M up to and excluding 3.216
GL.iNET GL-USB150 up to and excluding 3.216
GL.iNET Microuter-N300 up to and excluding 3.216 Vulnerability Description A command injection vulnerability exists in GL.iNet devices. Successful exploitation of this vulnerability could allow a remote attacker to execute arbitrary commands on the affected system.