CVE-2023-47464: Path Traversal
Published Nov 30, 2023
·Updated
Insecure Permissions vulnerability in GL.iNet AX1800 version 4.0.0 before 4.5.0 allows a remote attacker to execute arbitrary code via the upload API function.
Affected Software
2 affected components
All of the following
gl-inet Gl-ax1800 Firmware>=4.0.0<4.5.0
gl-inet GL-AX1800
Event History
Nov 30, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this security issue?
The vulnerability ID of this security issue is CVE-2023-47464.
2
What is the severity of CVE-2023-47464?
CVE-2023-47464 has a severity rating of 8.8, which is classified as high.
3
How does CVE-2023-47464 affect GL.iNet AX1800?
CVE-2023-47464 affects GL.iNet AX1800 version 4.0.0 before 4.5.0.
4
What is the impact of CVE-2023-47464?
CVE-2023-47464 allows a remote attacker to execute arbitrary code via the upload API function.
5
Is GL.iNet AX1800 version 4.0.0 after 4.5.0 vulnerable to CVE-2023-47464?
No, GL.iNet AX1800 version 4.0.0 after 4.5.0 is not vulnerable to CVE-2023-47464.