First published: Wed Jun 28 2023(Updated: )
Improper Neutralization of Input During Web Page Generation vulnerability in NEC Corporation Aterm Aterm WG2600HP2, WG2600HP, WG2200HP, WG1800HP2, WG1800HP, WG1400HP, WG600HP, WG300HP, WF300HP, WR9500N, WR9300N, WR8750N, WR8700N, WR8600N, WR8370N, WR8175N and WR8170N all versions allows a attacker to execute an arbitrary script, after obtaining a high privilege exploiting CVE-2023-3330 and CVE-2023-3331 vulnerabilities.
Credit: psirt-info@cyber.jp.nec.com
Affected Software | Affected Version | How to fix |
---|---|---|
Nec Aterm Wf300hp Firmware | ||
Nec Aterm Wf300hp | ||
Nec Aterm Wg1400hp Firmware | ||
Nec Aterm Wg1400hp | ||
Nec Aterm Wg1800hp Firmware | ||
Nec Aterm Wg1800hp | ||
Nec Aterm Wg1800hp2 Firmware | ||
Nec Aterm Wg1800hp2 | ||
Nec Aterm Wg2200hp Firmware | ||
Nec Aterm Wg2200hp | ||
Nec Aterm Wg2600hp Firmware | ||
Nec Aterm Wg2600hp | ||
Nec Aterm Wg2600hp2 Firmware | ||
Nec Aterm Wg2600hp2 | ||
Nec Aterm Wg300hp Firmware | ||
Nec Aterm Wg300hp | ||
Nec Aterm Wg600hp Firmware | ||
Nec Aterm Wg600hp | ||
Nec Aterm Wr8600n Firmware | ||
Nec Aterm Wr8600n | ||
Nec Aterm Wr8700n Firmware | ||
Nec Aterm Wr8700n | ||
Nec Aterm Wr8750n Firmware | ||
Nec Aterm Wr8750n | ||
Nec Aterm Wr9300n Firmware | ||
Nec Aterm Wr9300n | ||
Nec Aterm Wr9500n Firmware | ||
Nec Aterm Wr9500n | ||
Nec Aterm Wr8170n Firmware | ||
Nec Aterm Wr8170n | ||
Nec Aterm Wr8175n Firmware | ||
Nec Aterm Wr8175n | ||
Nec Aterm Wr8370n Firmware | ||
Nec Aterm Wr8370n |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2023-3332.
The severity rating of CVE-2023-3332 is 4.8 (medium).
The following software versions are affected by CVE-2023-3332: Nec Aterm Wf300hp Firmware, Nec Aterm Wg1400hp Firmware, Nec Aterm Wg1800hp Firmware, Nec Aterm Wg1800hp2 Firmware, Nec Aterm Wg2200hp Firmware, Nec Aterm Wg2600hp Firmware, Nec Aterm Wg2600hp2 Firmware, Nec Aterm Wg300hp Firmware, Nec Aterm Wg600hp Firmware, Nec Aterm Wr8600n Firmware, Nec Aterm Wr8700n Firmware, Nec Aterm Wr8750n Firmware, Nec Aterm Wr9300n Firmware, Nec Aterm Wr9500n Firmware, Nec Aterm Wr8170n Firmware, Nec Aterm Wr8175n Firmware, and Nec Aterm Wr8370n Firmware.
The Common Weakness Enumeration (CWE) ID for CVE-2023-3332 is 79.
You can find more information about CVE-2023-3332 at the following link: [https://jpn.nec.com/security-info/secinfo/nv23-007_en.html](https://jpn.nec.com/security-info/secinfo/nv23-007_en.html).