The NetModule NSRW web administration interface is vulnerable to path traversals, which could lead to arbitrary file uploads and deletion. By uploading malicious files to the web root directory, authenticated users could gain remote command execution with elevated privileges. This issue affects NSRW: from 4.3.0.0 before 4.3.0.119, from 4.4.0.0 before 4.4.0.118, from 4.6.0.0 before 4.6.0.105, from 4.7.0.0 before 4.7.0.103.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: ONEKEY

Published: 2023-02-16T09:07:09.930Z

Updated: 2023-02-21T08:24:22.762Z

Reserved: 2023-02-16T09:01:36.192Z


Link: CVE-2023-0862

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2023-02-16T10:15:11.983

Modified: 2023-11-07T04:01:44.163


Link: CVE-2023-0862

JSON object: View

cve-icon Redhat Information

No data.

CWE