CVE-2023-0354

The Akuvox E11 web server can be accessed without any user authentication, and this could allow an attacker to access sensitive information, as well as create and download packet captures with known default URLs.
References
Link Resource
https://www.cisa.gov/news-events/ics-advisories/icsa-23-068-01 Third Party Advisory US Government Resource
https://www.cisa.gov/news-events/ics-advisories/icsa-23-068-01 Third Party Advisory US Government Resource
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:akuvox:e11_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:akuvox:e11:-:*:*:*:*:*:*:*

History

21 Nov 2024, 07:37

Type Values Removed Values Added
References () https://www.cisa.gov/news-events/ics-advisories/icsa-23-068-01 - Third Party Advisory, US Government Resource () https://www.cisa.gov/news-events/ics-advisories/icsa-23-068-01 - Third Party Advisory, US Government Resource

07 Nov 2023, 04:00

Type Values Removed Values Added
CWE CWE-306

Information

Published : 2023-03-13 21:15

Updated : 2024-11-21 07:37


NVD link : CVE-2023-0354

Mitre link : CVE-2023-0354

CVE.ORG link : CVE-2023-0354


JSON object : View

Products Affected

akuvox

  • e11
  • e11_firmware
CWE

No CWE.