GL.iNet Devices SQL Injection (CVE-2023-50919)

Related Vulnerabilities: CVE-2023-50919  

Check Point Reference: CPAI-2023-1564 Date Published: 29 Feb 2024 Severity: Critical Last Updated: Thursday 29 February, 2024 Source: Industry Reference:CVE-2023-50919
Protection Provided by:

Security Gateway
R81, R80, R77, R75

Who is Vulnerable? GL.iNET GL-A1300 4.4.6
GL.iNET GL-AX1800 4.4.6
GL.iNET GL-AXT1800 4.4.6
GL.iNET GL-MT3000 4.4.6
GL.iNET GL-MT2500 4.4.6
GL.iNET GL-MT6000 4.5.0
GL.iNET GL-MT1300 4.3.7
GL.iNET GL-MT300N-V2 4.3.7
GL.iNET GL-AR750S 4.3.7
GL.iNET GL-AR750 4.3.7
GL.iNET GL-AR300M 4.3.7
GL.iNET GL-B1300 4.3.7 Vulnerability Description An SQL injection vulnerability exists in GL.iNet devices. Successful exploitation of this vulnerability would allow a remote attacker to execute arbitrary SQL commands on the affected system.