CVE-2023-23571: High severity milesight ur-32l vulnerability
Published Jul 6, 2023
·Updated
An access violation vulnerability exists in the eventcore functionality of Milesight UR32L v32.3.0.5. A specially crafted network request can lead to denial of service. An attacker can send a network request to trigger this vulnerability.
Affected Software
2 affected components
Milesight Ur32l Firmware=32.3.0.5
Milesight UR32L
Event History
Jul 6, 2023
CVE Published
via MITRE·02:53 PM
Data Sourced
via MITRE·02:53 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this access violation vulnerability?
The vulnerability ID for this access violation vulnerability is CVE-2023-23571.
2
What is the severity of CVE-2023-23571?
The severity of CVE-2023-23571 is high with a score of 7.5.
3
What is the affected software for CVE-2023-23571?
The affected software for CVE-2023-23571 is Milesight UR32L v32.3.0.5 firmware.
4
How can this vulnerability be exploited?
This vulnerability can be exploited by sending a specially crafted network request to the eventcore functionality of Milesight UR32L v32.3.0.5.
5
Is there a fix available for CVE-2023-23571?
Currently, there is no information available about a fix for CVE-2023-23571. It is recommended to follow the vendor's security advisories for updates.