Vulnerability Details CVE-2023-43627
Path traversal vulnerability in ACERA 1320 firmware ver.01.26 and earlier, and ACERA 1310 firmware ver.01.26 and earlier allows a network-adjacent authenticated attacker to alter critical information such as system files by sending a specially crafted request. They are affected when running in ST(Standalone) mode.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 33.2%
CVSS Severity
CVSS v3 Score 5.7
Products affected by CVE-2023-43627
-
cpe:2.3:h:furunosystems:acera_1310:-
-
cpe:2.3:h:furunosystems:acera_1320:-
-
cpe:2.3:o:furunosystems:acera_1310_firmware:-
-
cpe:2.3:o:furunosystems:acera_1310_firmware:01.26
-
cpe:2.3:o:furunosystems:acera_1320_firmware:-
-
cpe:2.3:o:furunosystems:acera_1320_firmware:01.26