First published: Thu Mar 23 2023(Updated: )
Command Injection vulnerability found in Tenda G103 v.1.0.05 allows an attacker to obtain sensitive information via a crafted package
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda G103 Firmware | =1.0.05 | |
Tenda G103 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-27079 is a Command Injection vulnerability found in Tenda G103 v.1.0.05 that allows an attacker to obtain sensitive information via a crafted package.
The severity of CVE-2023-27079 is high, with a CVSS score of 7.5.
An attacker can exploit CVE-2023-27079 by sending a specially crafted package to the Tenda G103 v.1.0.05 device, which allows them to execute arbitrary commands and obtain sensitive information.
Yes, Tenda G103 firmware version 1.0.05 is vulnerable to CVE-2023-27079.
To fix CVE-2023-27079, it is recommended to update the Tenda G103 firmware to a version that is not vulnerable to this command injection vulnerability.