Netis Netcore Router Backup param.file.tgz information disclosure
CVE-2023-0113

5.3MEDIUM

Key Information:

Vendor

Netis

Vendor
CVE Published:
7 January 2023

What is CVE-2023-0113?

A vulnerability was found in Netis Netcore Router up to 2.2.6. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file param.file.tgz of the component Backup Handler. The manipulation leads to information disclosure. The attack can be launched remotely. The associated identifier of this vulnerability is VDB-217591.

Affected Version(s)

Netcore Router 2.2.0

Netcore Router 2.2.1

Netcore Router 2.2.2

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

c4ng4c3ir0 (VulDB User)
.