CVE-2023-28392

Wi-Fi AP UNIT AC-PD-WAPU v1.05_B04 and earlier, AC-PD-WAPUM v1.05_B04 and earlier, AC-PD-WAPU-P v1.05_B04P and earlier, AC-PD-WAPUM-P v1.05_B04P and earlier, AC-WAPU-300 v1.00_B07 and earlier, AC-WAPU-300-P v1.00_B08P and earlier, AC-WAPUM-300 v1.00_B07 and earlier, and AC-WAPUM-300-P v1.00_B08P and earlier allow an authenticated user with an administrative privilege to execute an arbitrary OS command.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:inaba:ac-wapu-300_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:inaba:ac-wapu-300:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:inaba:ac-wapu-300-p_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:inaba:ac-wapu-300-p:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:inaba:ac-wapum-300_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:inaba:ac-wapum-300:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:inaba:ac-wapum-300-p_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:inaba:ac-wapum-300-p:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2023-05-23 02:15

Updated : 2023-06-09 06:16


NVD link : CVE-2023-28392

Mitre link : CVE-2023-28392

CVE.ORG link : CVE-2023-28392


JSON object : View

Products Affected

inaba

  • ac-wapu-300_firmware
  • ac-wapu-300-p
  • ac-wapu-300
  • ac-wapum-300-p
  • ac-wapum-300-p_firmware
  • ac-wapu-300-p_firmware
  • ac-wapum-300_firmware
  • ac-wapum-300
CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')