CVE-2023-1142: Path Traversal
In Delta Electronics InfraSuite Device Master versions prior to 1.0.5, an attacker could use URL decoding to retrieve system files, credentials, and bypass authentication resulting in privilege escalation.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-1142?
CVE-2023-1142 is a vulnerability found in Delta Electronics InfraSuite Device Master versions prior to 1.0.5 that allows an attacker to retrieve system files, credentials, and bypass authentication resulting in privilege escalation.
What is the severity of CVE-2023-1142?
CVE-2023-1142 has a severity rating of 9.8, which is considered critical.
How does CVE-2023-1142 affect Delta Electronics InfraSuite Device Master?
CVE-2023-1142 affects Delta Electronics InfraSuite Device Master versions prior to 1.0.5.
How can an attacker exploit CVE-2023-1142?
An attacker can exploit CVE-2023-1142 by using URL decoding to retrieve system files, credentials, and bypass authentication.
Is there a fix for CVE-2023-1142?
Yes, updating Delta Electronics InfraSuite Device Master to version 1.0.5 or later will fix the CVE-2023-1142 vulnerability.