CVE-2023-33238: Command-injection Vulnerability in Certificate Management
TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command injection vulnerability. This vulnerability stems from inadequate input validation in the certificate management function, which could potentially allow malicious users to execute remote code on affected devices.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-33238?
The severity of CVE-2023-33238 is critical.
Which firmware versions are affected by CVE-2023-33238?
TN-4900 Series firmware versions v1.2.4 and prior, and TN-5900 Series firmware versions v3.3 and prior are affected by CVE-2023-33238.
What is the vulnerability type of CVE-2023-33238?
CVE-2023-33238 is a command injection vulnerability.
How does CVE-2023-33238 occur?
CVE-2023-33238 occurs due to inadequate input validation in the certificate management function.
Is there a fix available for CVE-2023-33238?
Yes, a fix is available. Please refer to the vendor's security advisory for more information.