CVE-2023-4990: Path Traversal
Published Oct 11, 2023
·Updated
Directory traversal vulnerability in MCL-Net versions prior to 4.6 Update Package (P01) may allow attackers to read arbitrary files.
Affected Software
5 affected components
Mcl-collection Mcl-net Firmware<4.6.0.30210
Mcl-collection Mcl-net
Espeak-ng Espeak Ng<1.52.0
All of the following
Mcl-collection Mcl-net Firmware<4.6.0.30210
Mcl-collection Mcl-net
Event History
Oct 11, 2023
CVE Published
via MITRE·07:46 AM
Data Sourced
via MITRE·07:46 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2023-4990?
CVE-2023-4990 is a directory traversal vulnerability in MCL-Net versions prior to 4.6 Update Package (P01) that allows attackers to read arbitrary files.
2
How does CVE-2023-4990 impact MCL-Net?
CVE-2023-4990 allows attackers to read arbitrary files, potentially exposing sensitive information.
3
What is the severity of CVE-2023-4990?
CVE-2023-4990 has a severity rating of 7.5, which is considered high.
4
Which software versions are affected by CVE-2023-4990?
MCL-Net versions prior to 4.6 Update Package (P01) are affected by CVE-2023-4990.
5
How can I fix CVE-2023-4990?
To fix CVE-2023-4990, update MCL-Net to version 4.6 Update Package (P01) or later.