File Upload vulnerability in Digital China Networks DCFW-1800-SDC v.3.0 allows an authenticated attacker to execute arbitrary code via the wget function in the /sbin/cloudadmin.sh component.
References
Link | Resource |
---|---|
https://github.com/Push3AX/vul/blob/main/DCN/DCFW_1800_SDC_CommandInjection.md | Exploit Third Party Advisory |
https://www.dcnetworks.com.cn/goods/61.html | Product |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2023-10-04T00:00:00
Updated: 2023-10-04T21:28:13.446420
Reserved: 2023-09-18T00:00:00
Link: CVE-2023-43321
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-10-04T22:15:09.887
Modified: 2023-10-10T20:00:32.087
Link: CVE-2023-43321
JSON object: View
Redhat Information
No data.
CWE