CRITICAL · 9.8

CVE-2023-31746

There is a command injection vulnerability in the adslr VW2100 router with firmware version M1DV1.0. An unauthenticated attacker can exploit the vulnerability to execute system commands as the root us...

Vulnerability Description

There is a command injection vulnerability in the adslr VW2100 router with firmware version M1DV1.0. An unauthenticated attacker can exploit the vulnerability to execute system commands as the root user.

CVSS Score

9.8

CRITICAL

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
AdslrVw2100 Firmwarem1dv1.0
AdslrVw2100-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2023-31746?

CVE-2023-31746 is a vulnerability with a CVSS score of 9.8 (CRITICAL). There is a command injection vulnerability in the adslr VW2100 router with firmware version M1DV1.0. An unauthenticated attacker can exploit the vulnerability to execute system commands as the root us...

How severe is CVE-2023-31746?

CVE-2023-31746 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.

Is there a patch for CVE-2023-31746?

Check the references section above for vendor advisories and patch information. Affected products include: Adslr Vw2100 Firmware, Adslr Vw2100.