Vulnerability Description
Kardex Mlog MCC 5.7.12+0-a203c2a213-master allows remote code execution. It spawns a web interface listening on port 8088. A user-controllable path is handed to a path-concatenation method (Path.Combine from .NET) without proper sanitisation. This yields the possibility of including local files, as well as remote files on SMB shares. If one provides a file with the extension .t4, it is rendered with the .NET templating engine mono/t4, which can execute code.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Kardex | Kardex Control Center | 5.7.12\+0-a203c2a213-master |
Related Weaknesses (CWE)
References
- http://packetstormsecurity.com/files/171046/Kardex-Mlog-MCC-5.7.12-0-a203c2a213-ExploitThird Party AdvisoryVDB Entry
- http://packetstormsecurity.com/files/171689/Kardex-Mlog-MCC-5.7.12-Remote-Code-E
- http://seclists.org/fulldisclosure/2023/Feb/10ExploitMailing ListThird Party Advisory
- https://github.com/patrickhener/CVE-2023-22855/blob/main/advisory/advisory.mdExploitThird Party Advisory
- https://www.exploit-db.com/exploits/51239
- http://packetstormsecurity.com/files/171046/Kardex-Mlog-MCC-5.7.12-0-a203c2a213-ExploitThird Party AdvisoryVDB Entry
- http://packetstormsecurity.com/files/171689/Kardex-Mlog-MCC-5.7.12-Remote-Code-E
- http://seclists.org/fulldisclosure/2023/Feb/10ExploitMailing ListThird Party Advisory
- https://github.com/patrickhener/CVE-2023-22855/blob/main/advisory/advisory.mdExploitThird Party Advisory
- https://www.exploit-db.com/exploits/51239
FAQ
What is CVE-2023-22855?
CVE-2023-22855 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Kardex Mlog MCC 5.7.12+0-a203c2a213-master allows remote code execution. It spawns a web interface listening on port 8088. A user-controllable path is handed to a path-concatenation method (Path.Combi...
How severe is CVE-2023-22855?
CVE-2023-22855 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2023-22855?
Check the references section above for vendor advisories and patch information. Affected products include: Kardex Kardex Control Center.