CVE Published: 22/05/2023 |
CVE Updated: 02/08/2024 |
CVE Year: 2023 Source: Moxa |
Vendor: Moxa |
Product: MXsecurity Series Status : PUBLISHED
CVE-2023-33235 Description
MXsecurity version 1.0 is vulnearble to command injection vulnerability. This vulnerability has been reported in the SSH CLI program, which can be exploited by attackers who have gained authorization privileges. The attackers can break out of the restricted shell and subsequently execute arbitrary code.
Metrics
CVSS Version: 3.1 |
Base Score: 7.2 HIGH Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H