A low-privileged OS user with access to a Windows host where NETGEAR ProSAFE Network Management System is installed can create arbitrary JSP files in a Tomcat web application directory. The user can then execute the JSP files under the security context of SYSTEM.
References
Link | Resource |
---|---|
https://kb.netgear.com/000065885/Security-Advisory-for-Vertical-Privilege-Escalation-on-the-NMS300-PSV-2023-0127 | Vendor Advisory |
https://www.tenable.com/security/research/tra-2023-39 | Exploit Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: tenable
Published: 2023-11-29T22:47:42.597Z
Updated: 2023-11-29T22:47:42.597Z
Reserved: 2023-11-29T22:03:49.958Z
Link: CVE-2023-49694
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-11-29T23:15:20.750
Modified: 2023-12-05T01:54:34.097
Link: CVE-2023-49694
JSON object: View
Redhat Information
No data.