Remote Code Execution Vulnerability in Voltronic Power ViewPower
CVE-2023-51576
9.8CRITICAL
What is CVE-2023-51576?
A security vulnerability in Voltronic Power ViewPower allows remote attackers to execute arbitrary code on compromised systems. This issue exists within the RMI interface, which is operational on TCP port 51099 by default. The vulnerability arises from inadequate validation of user-supplied data, leading to the possibility of deserializing untrusted data. Exploiting this flaw does not require any authentication, permitting attackers to run code with system-level privileges.
Affected Version(s)
ViewPower 1.04.21353
