CVE-2023-24796

Password vulnerability found in Vinga WR-AC1200 81.102.1.4370 and before allows a remote attacker to execute arbitrary code via the password parameter at the /goform/sysTools and /adm/systools.asp endpoints.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:vinga:wr-ac1200_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:vinga:wr-ac1200:-:*:*:*:*:*:*:*

History

21 Nov 2024, 07:48

Type Values Removed Values Added
References () https://gist.github.com/yinfei6/3664387cb5b66b68c7eff4bfdb51b2d6 - Third Party Advisory () https://gist.github.com/yinfei6/3664387cb5b66b68c7eff4bfdb51b2d6 - Third Party Advisory

04 May 2023, 19:42

Type Values Removed Values Added
CPE cpe:2.3:o:vinga:wr-ac1200_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:vinga:wr-ac1200:-:*:*:*:*:*:*:*
References (MISC) https://gist.github.com/yinfei6/3664387cb5b66b68c7eff4bfdb51b2d6 - (MISC) https://gist.github.com/yinfei6/3664387cb5b66b68c7eff4bfdb51b2d6 - Third Party Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CWE NVD-CWE-noinfo

26 Apr 2023, 14:15

Type Values Removed Values Added
References
  • {'url': 'https://reference3.example.com', 'name': 'https://reference3.example.com', 'tags': [], 'refsource': 'MISC'}
  • {'url': 'https://reference7.example.com', 'name': 'https://reference7.example.com', 'tags': [], 'refsource': 'MISC'}
  • {'url': 'https://reference8.example.com', 'name': 'https://reference8.example.com', 'tags': [], 'refsource': 'MISC'}
  • {'url': 'https://reference5.example.com', 'name': 'https://reference5.example.com', 'tags': [], 'refsource': 'MISC'}
  • {'url': 'https://reference6.example.com', 'name': 'https://reference6.example.com', 'tags': [], 'refsource': 'MISC'}
  • {'url': 'https://reference4.example.com', 'name': 'https://reference4.example.com', 'tags': [], 'refsource': 'MISC'}

26 Apr 2023, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-04-26 13:15

Updated : 2024-11-21 07:48


NVD link : CVE-2023-24796

Mitre link : CVE-2023-24796

CVE.ORG link : CVE-2023-24796


JSON object : View

Products Affected

vinga

  • wr-ac1200_firmware
  • wr-ac1200