NA

CVE-2023-2625

Published: 28/06/2023 Updated: 06/07/2023
CVSS v3 Base Score: 8 | Impact Score: 5.9 | Exploitability Score: 2.1
VMScore: 0

Vulnerability Summary

A vulnerability exists that can be exploited by an authenticated client that is connected to the same network segment as the CoreTec 4, having any level of access VIEWER to ADMIN. To exploit the vulnerability the attacker can inject shell commands through a particular field of the web user interface that will be executed by the system.

Vulnerable Product Search on Vulmon Subscribe to Product

abb txpert_hub_coretec_4_firmware