5.3
CVSSv3

CVE-2023-34834

Published: 29/06/2023 Updated: 11/07/2023
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

A Directory Browsing vulnerability in MCL-Net version 4.3.5.8788 webserver running on default port 5080, allows malicious users to gain sensitive information about the configured databases via the "/file" endpoint.

Vulnerable Product Search on Vulmon Subscribe to Product

mcl-collection mcl-net_firmware 4.3.5.8788

Exploits

# Exploit Title: MCL-Net 4358788 - Information Disclosure # Date: 5/31/2023 # Exploit Author: Victor A Morales, GM Sectec Inc # Vendor Homepage: wwwmcl-mobilityplatformcom/netphp # Version: 4358788 (other versions may be affected) # Tested on: Microsoft Windows 10 Pro # CVE: CVE-2023-34834 Description: Directory browsing vulnera ...
MCL-Net version 4358788 suffers from an information disclosure vulnerability ...