Weintek EasyBuilder Pro contains a vulnerability that, even when the private key is immediately deleted after the crash report transmission is finished, the private key is exposed to the public, which could result in obtaining remote control of the crash report server.
References
Link Resource
https://www.cisa.gov/news-events/ics-advisories/icsa-23-306-05 Third Party Advisory US Government Resource
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: icscert

Published: 2023-11-06T19:26:09.044Z

Updated: 2023-11-06T19:26:09.044Z

Reserved: 2023-10-25T22:32:36.999Z


Link: CVE-2023-5777

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-11-06T20:15:08.033

Modified: 2023-11-14T19:28:22.567


Link: CVE-2023-5777

JSON object: View

cve-icon Redhat Information

No data.

CWE