CVE-2023-41780: Unsafe DLL Loading Vulnerability in ZTE ZXCLOUD iRAI
Published Jan 3, 2024
·Updated
There is an unsafe DLL loading vulnerability in ZTE ZXCLOUD iRAI. Due to the program failed to adequately validate the user's input, an attacker could exploit this vulnerability to escalate local privileges.
Affected Software
2 affected components
All of the following
ZTE ZXCLOUD iRAI<7.23.32
ZTE ZXCLOUD iRAI
Remediation
Information
7.23.32
Event History
Jan 3, 2024
CVE Published
01:52 AM
Data Sourced
01:52 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·02:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-41780?
CVE-2023-41780 has been classified with a critical severity level due to its potential for local privilege escalation.
2
How do I fix CVE-2023-41780?
To fix CVE-2023-41780, update ZTE ZXCLOUD iRAI to a version above 7.23.32 or apply any vendor-provided patches.
3
What type of vulnerability is CVE-2023-41780?
CVE-2023-41780 is categorized as an unsafe DLL loading vulnerability which can be exploited by attackers.
4
Who is affected by CVE-2023-41780?
Users of ZTE ZXCLOUD iRAI versions up to 7.23.32 are vulnerable to CVE-2023-41780.
5
Can CVE-2023-41780 be exploited remotely?
No, CVE-2023-41780 requires local access for an attacker to exploit the unsafe DLL loading vulnerability.