CVE-2023-47032: Code Injection
Published Jun 23, 2025
·Updated
Password Vulnerability in NCR Terminal Handler v.1.5.1 allows a remote attacker to execute arbitrary code via a crafted script to the UserService SOAP API function.
Affected Software
2 affected components
NCR Terminal Handler
NCR Terminal Handler=1.5.1
Event History
Jun 23, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-47032?
CVE-2023-47032 is considered a critical vulnerability due to its potential for arbitrary code execution.
2
How do I fix CVE-2023-47032?
To fix CVE-2023-47032, update the NCR Terminal Handler to the latest version that addresses this vulnerability.
3
What types of attacks can exploit CVE-2023-47032?
CVE-2023-47032 can be exploited by crafting a malicious script that targets the UserService SOAP API function.
4
Who is affected by CVE-2023-47032?
CVE-2023-47032 affects users of NCR Terminal Handler version 1.5.1.
5
Is CVE-2023-47032 being actively exploited?
As of now, there have been reports of CVE-2023-47032 being actively exploited in the wild.