CVE-2023-39807

N.V.K.INTER CO., LTD. (NVK) iBSG v3.5 was discovered to contain a SQL injection vulnerability via the a_passwd parameter at /portal/user-register.php.
References
Link Resource
http://ibsg.com Not Applicable
http://nvkinter.com Broken Link
Configurations

Configuration 1 (hide)

cpe:2.3:a:nvki:intelligent_broadband_subscriber_gateway:3.5:*:*:*:*:*:*:*

History

24 Aug 2023, 17:53

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CWE CWE-89
References (MISC) http://nvkinter.com - (MISC) http://nvkinter.com - Broken Link
References (MISC) http://ibsg.com - (MISC) http://ibsg.com - Not Applicable
First Time Nvki intelligent Broadband Subscriber Gateway
Nvki
CPE cpe:2.3:a:nvki:intelligent_broadband_subscriber_gateway:3.5:*:*:*:*:*:*:*

21 Aug 2023, 12:47

Type Values Removed Values Added
New CVE

Information

Published : 2023-08-21 01:15

Updated : 2024-02-28 20:33


NVD link : CVE-2023-39807

Mitre link : CVE-2023-39807

CVE.ORG link : CVE-2023-39807


JSON object : View

Products Affected

nvki

  • intelligent_broadband_subscriber_gateway
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')