There is a command injection vulnerability in SolarView Compact through 6.00, attackers can execute commands by bypassing internal restrictions through downloader.php.
References
Link | Resource |
---|---|
https://github.com/Timorlover/CVE-2023-23333 | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2023-02-06 14:15
Updated : 2023-02-14 12:15
NVD link : CVE-2023-23333
Mitre link : CVE-2023-23333
JSON object : View
CWE
CWE-77
Improper Neutralization of Special Elements used in a Command ('Command Injection')
Products Affected
contec
- solarview_compact
- solarview_compact_firmware