First published: Wed Jun 28 2023(Updated: )
Improper Limitation of a Pathname to a Restricted Directory vulnerability in NEC Corporation Aterm WG2600HP2, WG2600HP, WG2200HP, WG1800HP2, WG1800HP, WG1400HP, WG600HP, WG300HP, WF300HP, WR9500N, WR9300N, WR8750N, WR8700N, WR8600N, WR8370N, WR8175N and WR8170N all versions allows a attacker to obtain specific files in the product.
Credit: psirt-info@cyber.jp.nec.com psirt-info@cyber.jp.nec.com
Affected Software | Affected Version | How to fix |
---|---|---|
NEC Aterm WF300HP firmware | ||
NEC Aterm WF300HP firmware | ||
NEC Aterm WG1400HP firmware | ||
Aterm WG1400HP | ||
NEC Aterm WG1800HP firmware | ||
NEC Aterm WG1800HP3 | ||
NEC Aterm WG1800HP2 firmware | ||
NEC Aterm WG1800HP2 firmware | ||
NEC Aterm WG2200HP firmware | ||
Aterm WG2200HP | ||
NEC Aterm WG2600HP2 firmware | ||
NEC Aterm WG2600HP firmware | ||
NEC Aterm WG2600HP2 firmware | ||
NEC Aterm WG2600HP2 firmware | ||
Aterm WG300HP firmware | ||
NEC Aterm WG300HP firmware | ||
NEC Aterm WG600HP firmware | ||
Aterm WG600HP | ||
NEC Aterm WR8600N firmware | ||
Aterm WR8600N | ||
NEC Aterm WR8700N firmware | ||
Aterm WR8700N | ||
NEC Aterm WR8750N firmware | ||
NEC Aterm WR8750N firmware | ||
NEC Aterm WR9300N | ||
NEC Aterm WR9300N | ||
NEC Aterm WR9500N firmware | ||
NEC Aterm WR9500N firmware | ||
NEC Aterm WR8170N firmware | ||
NEC Aterm WR8170N firmware | ||
NEC Aterm WR8175N firmware | ||
NEC Aterm WR8175N firmware | ||
NEC Aterm WR8370N | ||
NEC Aterm WR8370N firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this NEC Corporation Aterm vulnerability is CVE-2023-3330.
The severity of the CVE-2023-3330 vulnerability is medium (4.3).
The NEC Corporation Aterm products affected by the CVE-2023-3330 vulnerability are Aterm WG2600HP2, WG2600HP, WG2200HP, WG1800HP2, WG1800HP, WG1400HP, WG600HP, WG300HP, WF300HP, WR9500N, WR9300N, WR8750N, WR8700N, WR8600N, WR8370N, WR8175N, and WR8170N.
The CWE category for the CVE-2023-3330 vulnerability is CWE-22.
You can find more information about the NEC Corporation Aterm vulnerability with ID CVE-2023-3330 at this link: [link](https://jpn.nec.com/security-info/secinfo/nv23-007_en.html)