PT-2023-32046 · Sato · Sato Cl4Nx-J Plus

·

CVE-2023-5327

·

Published

2023-10-01

·

Updated

2024-05-17

CVSS v3.1

6.5

Medium

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions SATO CL4NX-J Plus version 1.13.2-u455 r2
Description A vulnerability was found in the SATO CL4NX-J Plus, affecting some unknown functionality of the file /rest/dir/. The manipulation of the full argument leads to path traversal. The attack needs to be initiated within the local network. The exploit has been disclosed to the public and may be used.
Recommendations For SATO CL4NX-J Plus version 1.13.2-u455 r2, consider restricting access to the /rest/dir/ endpoint to minimize the risk of exploitation. As a temporary workaround, avoid using the full argument in the affected endpoint until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2023-5327

Affected Products

Sato Cl4Nx-J Plus