PT-2023-32046 · Sato · Sato Cl4Nx-J Plus

Cv3Tr4Ck

·

Publicado

2023-10-01

·

Atualizado

2024-05-17

·

CVE-2023-5327

CVSS v3.1

6.5

Média

VetorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions SATO CL4NX-J Plus version 1.13.2-u455 r2
Description A vulnerability was found in the SATO CL4NX-J Plus, affecting some unknown functionality of the file /rest/dir/. The manipulation of the full argument leads to path traversal. The attack needs to be initiated within the local network. The exploit has been disclosed to the public and may be used.
Recommendations For SATO CL4NX-J Plus version 1.13.2-u455 r2, consider restricting access to the /rest/dir/ endpoint to minimize the risk of exploitation. As a temporary workaround, avoid using the full argument in the affected endpoint until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Path traversal

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2023-5327

Produtos afetados

Sato Cl4Nx-J Plus