CVE-2023-46685: Critical severity Level1 Wbr-6013 Firmware vulnerability
Published Jul 8, 2024
·Updated
A hard-coded password vulnerability exists in the telnetd functionality of LevelOne WBR-6013 RER4Av3411b2T2RLEV09170623. A set of specially crafted network packets can lead to arbitrary command execution.
Affected Software
2 affected components
All of the following
Level1 Wbr-6013 Firmware=rer4_a_v3411b_2t2r_lev_09_170623
Level1 Wbr-6013
Event History
Jul 8, 2024
CVE Published
via MITRE·03:22 PM
Data Sourced
via MITRE·03:22 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-46685?
CVE-2023-46685 has a high severity rating due to the potential for arbitrary command execution via telnetd.
2
How do I fix CVE-2023-46685?
To fix CVE-2023-46685, disable telnet access and use secure protocols for remote management.
3
What devices are affected by CVE-2023-46685?
CVE-2023-46685 specifically affects the LevelOne WBR-6013 with firmware version rer4_a_v3411b_2t2r_lev_09_170623.
4
What type of vulnerability is CVE-2023-46685?
CVE-2023-46685 is classified as a hard-coded password vulnerability.
5
What can attackers achieve with CVE-2023-46685?
Attackers can execute arbitrary commands on affected devices by sending specially crafted network packets.