CVE-2023-42336: Critical severity netis systems wf2409e vulnerability
An issue in NETIS SYSTEMS WF2409Ev4 v.1.0.1.705 allows a remote attacker to execute arbitrary code and obtain sensitive information via the password parameter in the /etc/shadow.sample component.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-42336?
The severity of CVE-2023-42336 is critical with a CVSS score of 9.8.
How can a remote attacker exploit CVE-2023-42336?
A remote attacker can exploit CVE-2023-42336 by sending a malicious request with a specially crafted password parameter to the /etc/shadow.sample component.
What can a remote attacker achieve by exploiting CVE-2023-42336?
By exploiting CVE-2023-42336, a remote attacker can execute arbitrary code and obtain sensitive information.
Is there a fix available for CVE-2023-42336?
Currently, there is no known fix available for CVE-2023-42336. It is recommended to follow the vendor's advisory for any updates or patches.
Where can I find more information about CVE-2023-42336?
You can find more information about CVE-2023-42336 at the following reference link: [GitHub - Root Hard Code.md](https://github.com/adhikara13/CVE/blob/main/netis_WF2409E/Root_Hard_Code.md)