PT-2023-32046 · Sato · Sato Cl4Nx-J Plus
Cv3Tr4Ck
·
Publicado
2023-10-01
·
Atualizado
2024-05-17
·
CVE-2023-5327
CVSS v3.1
6.5
Média
| Vetor | AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
SATO CL4NX-J Plus version 1.13.2-u455 r2
Description
A vulnerability was found in the SATO CL4NX-J Plus, affecting some unknown functionality of the file /rest/dir/. The manipulation of the
full argument leads to path traversal. The attack needs to be initiated within the local network. The exploit has been disclosed to the public and may be used.Recommendations
For SATO CL4NX-J Plus version 1.13.2-u455 r2, consider restricting access to the /rest/dir/ endpoint to minimize the risk of exploitation. As a temporary workaround, avoid using the
full argument in the affected endpoint until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.Exploit
Path traversal
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Sato Cl4Nx-J Plus