CVE-2023-5642: Advantech R-SeeNet Unauthenticated Read/Write
Published Oct 18, 2023
·Updated
Advantech R-SeeNet v2.4.23 allows an unauthenticated remote attacker to read from and write to the snmpmon.ini file, which contains sensitive information.
Affected Software
1 affected component
Advantech R-SeeNet=2.4.23
Event History
Oct 18, 2023
CVE Published
via MITRE·03:04 PM
Data Sourced
via MITRE·03:04 PM
DescriptionSeverityWeakness
Data Sourced
04:15 PM
DescriptionSeverityWeakness
May 24, 57290
Event
via FIRST·01:24 AM
Frequently Asked Questions
1
What is the severity of CVE-2023-5642?
The severity of CVE-2023-5642 is critical, with a CVSS score of 9.8.
2
Is authentication required to exploit CVE-2023-5642?
No, CVE-2023-5642 allows an unauthenticated remote attacker to exploit it.
3
What can an attacker do if they exploit CVE-2023-5642?
An attacker who successfully exploits CVE-2023-5642 can read from and write to the snmpmon.ini file, which contains sensitive information.
4
How can I fix CVE-2023-5642?
To fix CVE-2023-5642, it is recommended to update to a version of Advantech R-SeeNet that is not affected by the vulnerability.
5
Where can I find more information about CVE-2023-5642?
More information about CVE-2023-5642 can be found at the following link: https://tenable.com/security/research/tra-2023-33