Fiche vulnérabilité
CVE-2023-51743 : faille moyenne Hathway Skyworth Router CM5100 (CVSS 6.5)
Description
This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to insufficient validation of user supplied input for the Set Upstream Channel ID (UCID) parameter at its web interface. A remote attacker could exploit this vulnerability by supplying specially crafted input to the parameter at the web interface of the vulnerable targeted system. Successful exploitation of this vulnerability could allow the attacker to perform a Denial of Service (DoS) attack on the targeted system.
En bref
- Sévérité
- Moyenne (CVSS 6.5)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 17 janv. 2024
- Dernière mise à jour
- 17 juin 2025
Produits concernés
- Hathway Skyworth Router CM5100
Correctif et mesures
Upgrade to latest version 4.1.1.25 or later.