CVE-2023-33722: Command Injection
Published May 31, 2023
·Updated
EDIMAX BR-6288ACL v1.12 was discovered to contain an authenticated remote code execution (RCE) vulnerability via the pppUserName parameter.
Affected Software
4 affected components
Edimax Br-6288acl Firmware=1.12
Edimax BR-6288ACL
All of the following
Edimax Br-6288acl Firmware=1.12
Edimax BR-6288ACL
Event History
May 31, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
07:15 PM
Description
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-33722?
CVE-2023-33722 has been classified as a critical vulnerability due to its potential for authenticated remote code execution.
2
How do I fix CVE-2023-33722?
To fix CVE-2023-33722, upgrade the Edimax BR-6288ACL firmware to the latest version that addresses this vulnerability.
3
Who is affected by CVE-2023-33722?
CVE-2023-33722 affects users of the Edimax BR-6288ACL device running firmware version 1.12.
4
What kind of vulnerability is CVE-2023-33722?
CVE-2023-33722 is an authenticated remote code execution (RCE) vulnerability that allows attackers to execute arbitrary code on the device.
5
Can CVE-2023-33722 be exploited remotely?
Yes, CVE-2023-33722 can be exploited remotely, provided the attacker has valid authentication credentials.