PT-2023-7466 · Unknown · Hgiga Powerstation

Chiu Tsungshu

·

Published

2023-01-31

·

Updated

2023-03-30

·

CVE-2023-24837

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions HGiga PowerStation (affected versions not specified)
Description The issue is related to insufficient filtering for user input in the remote management function of the system, allowing an authenticated remote attacker to inject and execute arbitrary system commands. This could enable the attacker to perform arbitrary system operations or disrupt service.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

OS Command Injection

Weakness Enumeration

Related Identifiers

BDU:2023-08509
CVE-2023-24837

Affected Products

Hgiga Powerstation