First published: Thu Nov 09 2023(Updated: )
A CWE-23: Relative Path Traversal vulnerability exists in Telit Cinterion BGS5, Telit Cinterion EHS5/6/8, Telit Cinterion PDS5/6/8, Telit Cinterion ELS61/81, Telit Cinterion PLS62 that could allow a local, low privileged attacker to escape from virtual directories and get read/write access to protected files on the targeted system.
Credit: vulnerability@kaspersky.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Telit BGS5 | ||
Telit BGS5 | ||
All of | ||
Telit Ehs5 Firmware | ||
Telit Ehs5 Firmware | ||
All of | ||
Telit EHS6 Firmware | ||
Telit EHS6 Firmware | ||
All of | ||
Telit Ehs8 | ||
Telit Ehs8 Firmware | ||
All of | ||
Telit Pds5 Firmware | ||
Telit Pds5 Firmware | ||
All of | ||
Telit PDS6 | ||
Telit PDS6 | ||
All of | ||
Telit PDS8 | ||
Telit PDS8 | ||
All of | ||
Telit Els61 | ||
Telit Els61 Firmware | ||
All of | ||
Telit Els81 | ||
Telit Els81 Firmware | ||
All of | ||
Telit Pls62 | ||
Telit Pls62 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-47613 is a Relative Path Traversal vulnerability that exists in Telit Cinterion BGS5, Telit Cinterion EHS5/6/8, Telit Cinterion PDS5/6/8, Telit Cinterion ELS61/81, and Telit Cinterion PLS62.
The severity of CVE-2023-47613 is high, with a severity value of 7.1.
Telit BGS5 Firmware is affected by CVE-2023-47613, exposing it to the Relative Path Traversal vulnerability.
An attacker with local, low privileges can exploit CVE-2023-47613 to escape from virtual directories and gain unauthorized read/write access to protected files.
More information about CVE-2023-47613 can be found at the following reference: [link](https://ics-cert.kaspersky.com/advisories/2023/11/08/klcert-22-211-telit-cinterion-thales-gemalto-modules-relative-path-traversal/)