CVE-2023-25915: Authenticated Remote Command Execution in Danfoss AK-SM800A
Due to improper input validation, a remote attacker could execute arbitrary commands on the target system.
Other sources
Due to improper input validation, an authenticated remote attacker could execute arbitrary commands on the target system.
— NVD
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-25915?
CVE-2023-25915 is a vulnerability that allows a remote attacker to execute arbitrary commands on the target system due to improper input validation.
What is the severity of CVE-2023-25915?
The severity of CVE-2023-25915 is critical with a severity value of 9.8.
Which software is affected by CVE-2023-25915?
The Danfoss Ak-sm 800a Firmware version 3.3 is affected by CVE-2023-25915.
How can I mitigate CVE-2023-25915?
Update the Danfoss Ak-sm 800a Firmware to a version that includes the fix for CVE-2023-25915.
Are there any additional references for CVE-2023-25915?
Yes, you can find more information about CVE-2023-25915 at the following links: [Link1](https://csirt.divd.nl/CVE-2023-25915) [Link2](https://csirt.divd.nl/DIVD-2023-00025)