Vulnerability Description
Incorrect access control in the administrative functionalities of BES--6024PB-I50H1 VideoPlayTool v2.0.1.0 allow attackers to execute arbitrary administrative commands via a crafted payload sent to the desired endpoints.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Besder | Videoplaytool | 2.0.1.0 |
| Besder | Bes--6024Pb-I50H1 | - |
Related Weaknesses (CWE)
References
- https://gitlab.com/FallFur/exploiting-unprotected-admin-funcionalities-on-besderExploit
- https://gitlab.com/FallFur/exploiting-unprotected-admin-funcionalities-on-besderExploit
FAQ
What is CVE-2023-33443?
CVE-2023-33443 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Incorrect access control in the administrative functionalities of BES--6024PB-I50H1 VideoPlayTool v2.0.1.0 allow attackers to execute arbitrary administrative commands via a crafted payload sent to th...
How severe is CVE-2023-33443?
CVE-2023-33443 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2023-33443?
Check the references section above for vendor advisories and patch information. Affected products include: Besder Videoplaytool, Besder Bes--6024Pb-I50H1.