Lucene search

K
cvelistTenableCVELIST:CVE-2023-0127
HistoryFeb 11, 2023 - 12:00 a.m.

CVE-2023-0127

2023-02-1100:00:00
tenable
www.cve.org
command injection
firmware_update
restricted telnet
authenticated attacker
arbitrary commands
root

0.005 Low

EPSS

Percentile

76.7%

A command injection vulnerability in the firmware_update command, in the device’s restricted telnet interface, allows an authenticated attacker to execute arbitrary commands as root.

CNA Affected

[
  {
    "vendor": "n/a",
    "product": "D-Link DWL-2600AP with firmware v4.2.0.17",
    "versions": [
      {
        "version": "DWL-2600AP with firmware version v.4.2.0.17",
        "status": "affected"
      }
    ]
  }
]

0.005 Low

EPSS

Percentile

76.7%

Related for CVELIST:CVE-2023-0127