Vulnerability Details CVE-2023-43488
The vulnerability allows a low privileged (untrusted) application to
modify a critical system property that should be denied, in order to enable the ADB (Android Debug Bridge) protocol to be exposed on the network, exploiting it to gain a privileged shell on the device without requiring the physical access through USB.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 18.9%
CVSS Severity
CVSS v3 Score 7.9
Products affected by CVE-2023-43488
-
cpe:2.3:h:boschrexroth:ctrlx_hmi_web_panel_wr2107:-
-
cpe:2.3:h:boschrexroth:ctrlx_hmi_web_panel_wr2110:-
-
cpe:2.3:h:boschrexroth:ctrlx_hmi_web_panel_wr2115:-
-
cpe:2.3:o:boschrexroth:ctrlx_hmi_web_panel_wr2107_firmware:*
-
cpe:2.3:o:boschrexroth:ctrlx_hmi_web_panel_wr2110_firmware:*
-
cpe:2.3:o:boschrexroth:ctrlx_hmi_web_panel_wr2115_firmware:*