Incorrect access control in 70mai a500s v1.2.119 allows attackers to directly access and delete the video files of the driving recorder through ftp and other protocols.
References
Link | Resource |
---|---|
https://github.com/Question-h/vuln/blob/master/70mai_a500s_backdoor.md | Exploit Third Party Advisory |
https://github.com/Question-h/vuln/blob/master/CVE-2023-43271.md | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2023-10-09T00:00:00
Updated: 2023-10-09T20:57:21.642375
Reserved: 2023-09-18T00:00:00
Link: CVE-2023-43271
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-10-09T21:15:10.173
Modified: 2023-10-16T18:09:54.913
Link: CVE-2023-43271
JSON object: View
Redhat Information
No data.
CWE