First published: Thu Nov 30 2023(Updated: )
In Delta Electronics InfraSuite Device Master v.1.0.7, a vulnerability exists that allows an attacker to write to any file to any location of the filesystem, which could lead to remote code execution.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Deltaww Infrasuite Device Master | =1.0.7 |
Delta Electronics recommends updating their software to v1.0.10 https://datacenter-softwarecenter.deltaww.com/Download/UPS/Software/InfraSuite_Device_Master_1.0.10.exe or later.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-46690 is a vulnerability in Delta Electronics InfraSuite Device Master v.1.0.7 where an attacker can write to any file to any location of the filesystem, potentially leading to remote code execution.
CVE-2023-46690 has a severity rating of 8.8 (high).
Delta Electronics InfraSuite Device Master v.1.0.7 is affected by CVE-2023-46690.
By exploiting CVE-2023-46690, an attacker can write to any file to any location of the filesystem, which could lead to remote code execution.
At the moment, there is no known fix available for CVE-2023-46690. It is recommended to follow the guidance provided by the vendor and apply any patches or updates as soon as they become available.