MEDIUM · 6.8

CVE-2023-47612

A CWE-552: Files or Directories Accessible to External Parties vulnerability exists in Telit Cinterion BGS5, Telit Cinterion EHS5/6/8, Telit Cinterion PDS5/6/8, Telit Cinterion ELS61/81, Telit Cinteri...

Vulnerability Description

A CWE-552: Files or Directories Accessible to External Parties vulnerability exists in Telit Cinterion BGS5, Telit Cinterion EHS5/6/8, Telit Cinterion PDS5/6/8, Telit Cinterion ELS61/81, Telit Cinterion PLS62 that could allow an attacker with physical access to the target system to obtain a read/write access to any files and directories on the targeted system, including hidden files and directories.

CVSS Score

6.8

MEDIUM

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
PHYSICAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
TelitBgs5 Firmware-
TelitBgs5-
TelitEhs5 Firmware-
TelitEhs5-
TelitEhs6 Firmware-
TelitEhs6-
TelitEhs8 Firmware-
TelitEhs8-
TelitPds5 Firmware-
TelitPds5-
TelitPds6 Firmware-
TelitPds6-
TelitPds8 Firmware-
TelitPds8-
TelitEls61 Firmware-
TelitEls61-
TelitEls81 Firmware-
TelitEls81-
TelitPls62 Firmware-
TelitPls62-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2023-47612?

CVE-2023-47612 is a vulnerability with a CVSS score of 6.8 (MEDIUM). A CWE-552: Files or Directories Accessible to External Parties vulnerability exists in Telit Cinterion BGS5, Telit Cinterion EHS5/6/8, Telit Cinterion PDS5/6/8, Telit Cinterion ELS61/81, Telit Cinteri...

How severe is CVE-2023-47612?

CVE-2023-47612 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2023-47612?

Check the references section above for vendor advisories and patch information. Affected products include: Telit Bgs5 Firmware, Telit Bgs5, Telit Ehs5 Firmware, Telit Ehs5, Telit Ehs6 Firmware.