PT-2023-6842 · Netis · Netis Netcore Router

Published

2023-01-07

·

Updated

2024-05-17

·

CVE-2023-0114

CVSS v2.0

4.6

Medium

VectorAV:L/AC:L/Au:S/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions Netis Netcore Router (affected versions not specified)
Description The issue is related to the Backup Handler component of the Netis Netcore Router, specifically with the file param.file.tgz. It involves the cleartext storage of critical information in a file or on disk. Exploitation of this issue can allow an attacker to disclose protected information. Local access is required to approach this attack.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Cleartext Storage of Sensitive Information

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2023-07844
CVE-2023-0114

Affected Products

Netis Netcore Router