First published: Tue Jan 09 2024(Updated: )
An issue was discovered in libremote_dbg.so on TRENDnet TV-IP1314PI 5.5.3 200714 devices. Filtering of debug information is mishandled during use of popen. Consequently, an attacker can bypass validation and execute a shell command.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Trendnet TV-IP1314PI Firmware | =5.5.3-200714 | |
Trendnet TV-IP1314PI Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-49235 has been classified as a high severity vulnerability due to its potential to allow arbitrary command execution.
To fix CVE-2023-49235, update the TRENDnet TV-IP1314PI firmware to the latest version that addresses this vulnerability.
CVE-2023-49235 specifically affects TRENDnet TV-IP1314PI devices running firmware version 5.5.3 200714.
An attacker can exploit CVE-2023-49235 to bypass validation and execute arbitrary shell commands on the affected devices.
Yes, CVE-2023-49235 is related to a mishandling of debug information during the use of popen in libremote_dbg.so.