First published: Fri Nov 03 2023(Updated: )
Chunghwa Telecom NOKIA G-040W-Q has a vulnerability of insufficient filtering for user input. A remote attacker with administrator privilege can exploit this vulnerability to perform a Command Injection attack to execute arbitrary commands, disrupt the system or terminate services.
Credit: twcert@cert.org.tw
Affected Software | Affected Version | How to fix |
---|---|---|
Nokia G-040w-q Firmware | =g040wqr201207 | |
NOKIA G-040W-Q |
Update version to G040WQR231013.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-41352.
The title of the vulnerability is Chunghwa Telecom NOKIA G-040W-Q - Command Injection.
The severity of CVE-2023-41352 is high with a severity value of 7.2.
CVE-2023-41352 affects Chunghwa Telecom NOKIA G-040W-Q by allowing a remote attacker with administrator privilege to perform a Command Injection attack and execute arbitrary commands, disrupt the system, or terminate services.
To fix CVE-2023-41352, it is recommended to apply the latest firmware update provided by Chunghwa Telecom or Nokia.