Vulnerability Description
Directory traversal vulnerability in MCL-Net versions prior to 4.6 Update Package (P01) may allow attackers to read arbitrary files.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Espeak-Ng | Espeak Ng | < 1.52.0 |
| Mcl-Collection | Mcl-Net Firmware | < 4.6.0.30210 |
| Mcl-Collection | Mcl-Net | - |
Related Weaknesses (CWE)
References
- https://www.mcl-mobilityplatform.com/downloads.phpProductRelease Notes
- https://www.mcl-mobilityplatform.com/downloads.phpProductRelease Notes
FAQ
What is CVE-2023-4990?
CVE-2023-4990 is a vulnerability with a CVSS score of 8.3 (HIGH). Directory traversal vulnerability in MCL-Net versions prior to 4.6 Update Package (P01) may allow attackers to read arbitrary files.
How severe is CVE-2023-4990?
CVE-2023-4990 has been rated HIGH with a CVSS base score of 8.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-4990?
Check the references section above for vendor advisories and patch information. Affected products include: Espeak-Ng Espeak Ng, Mcl-Collection Mcl-Net Firmware, Mcl-Collection Mcl-Net.