HIGH · 7.8

CVE-2023-33469

In instances where the screen is visible and remote mouse connection is enabled, KramerAV VIA Connect (2) and VIA Go (2) devices with a version prior to 4.0.1.1326 can be exploited to achieve local co...

Vulnerability Description

In instances where the screen is visible and remote mouse connection is enabled, KramerAV VIA Connect (2) and VIA Go (2) devices with a version prior to 4.0.1.1326 can be exploited to achieve local code execution at the root level.

CVSS Score

7.8

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
KrameravVia Go2 Firmware< 4.0.1.1326
KrameravVia Go2-
KrameravVia Connect2 Firmware< 4.0.1.1326
KrameravVia Connect2-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2023-33469?

CVE-2023-33469 is a vulnerability with a CVSS score of 7.8 (HIGH). In instances where the screen is visible and remote mouse connection is enabled, KramerAV VIA Connect (2) and VIA Go (2) devices with a version prior to 4.0.1.1326 can be exploited to achieve local co...

How severe is CVE-2023-33469?

CVE-2023-33469 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2023-33469?

Check the references section above for vendor advisories and patch information. Affected products include: Kramerav Via Go2 Firmware, Kramerav Via Go2, Kramerav Via Connect2 Firmware, Kramerav Via Connect2.