An issue was discovered in Vonage Box Telephone Adapter VDV23 version VDV21-3.2.11-0.5.1, allows local attackers to bypass UART authentication controls and read/write arbitrary values to the memory of the device.
References
Link | Resource |
---|---|
https://trojanhorsey.substack.com/p/cve-2023-47304-unsecured-uart-in | Exploit |
Configurations
Configuration 1 (hide)
AND |
|
History
11 Dec 2023, 15:37
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-287 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
CPE | cpe:2.3:o:vonage:vdv23_firmware:vdv21-3.2.11-0.5.1:*:*:*:*:*:*:* cpe:2.3:h:vonage:vdv23:-:*:*:*:*:*:*:* |
|
References | () https://trojanhorsey.substack.com/p/cve-2023-47304-unsecured-uart-in - Exploit |
05 Dec 2023, 04:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-12-05 04:15
Updated : 2024-02-05 00:22
NVD link : CVE-2023-47304
Mitre link : CVE-2023-47304
CVE.ORG link : CVE-2023-47304
JSON object : View
Products Affected
vonage
- vdv23
- vdv23_firmware
CWE
CWE-287
Improper Authentication