HIGH
Chengdu VEC40G denial of service
Published Jun 12, 2023
7.5
HIGHCVSS 3.1
EPSS 18.71%
Description
A vulnerability classified as problematic was found in Chengdu VEC40G 3.0. Affected by this vulnerability is an unknown functionality of the file /send_order.cgi?parameter=restart. The manipulation of the argument restart with the input reboot leads to denial of service. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-231229 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Affected products
-
- Version 3.0StatusaffectedConstraints-
- Version
AND
- 3.0
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (2)
References (4)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2023-43884 Advisory
- https://github.com/shulao2020/cve/blob/main/Flying%20Fish.md exploitThird Party Advisory
- https://vuldb.com/?ctiid.231229 signaturepermissions-requiredThird Party Advisory
- https://vuldb.com/?id.231229 vdb-entrytechnical-descriptionThird Party Advisory
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2023-43884 | Advisory | |
| https://github.com/shulao2020/cve/blob/main/Flying%20Fish.md | exploitThird Party Advisory | |
| https://vuldb.com/?ctiid.231229 | signaturepermissions-requiredThird Party Advisory | |
| https://vuldb.com/?id.231229 | vdb-entrytechnical-descriptionThird Party Advisory |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner VulDB
Published Jun 12, 2023
Updated Aug 2, 2024
Reserved Jun 12, 2023
Link CVE-2023-3206
CISA Vulnrichment
Updated n/a
ENISA EUVD
EUVD-2023-43884 Assigner VulDB
Published Jun 12, 2023
Updated Aug 2, 2024
Exploited since n/a
Link EUVD-2023-43884