execute an arbitrary script, after obtaining a high privilege exploiting CVE-2023-3330 and CVE-2023-3331 vulnerabilities.
Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Workaround
Stop using the products or remove the USB storage.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-44000 | Improper Neutralization of Input During Web Page Generation vulnerability in NEC Corporation Aterm Aterm WG2600HP2, WG2600HP, WG2200HP, WG1800HP2, WG1800HP, WG1400HP, WG600HP, WG300HP, WF300HP, WR9500N, WR9300N, WR8750N, WR8700N, WR8600N, WR8370N, WR8175N and WR8170N all versions allows a attacker to execute an arbitrary script, after obtaining a high privilege exploiting CVE-2023-3330 and CVE-2023-3331 vulnerabilities. |
Wed, 04 Dec 2024 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Subscriptions
Status: PUBLISHED
Assigner: NEC
Published:
Updated: 2024-12-04T20:52:34.092Z
Reserved: 2023-06-20T01:14:10.138Z
Link: CVE-2023-3332
Updated: 2024-08-02T06:55:01.051Z
Status : Modified
Published: 2023-06-28T02:15:49.650
Modified: 2026-06-17T06:13:50.183
Link: CVE-2023-3332
No data.
OpenCVE Enrichment
No data.
-
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
EUVD