CVE-2023-31198

OS command injection vulnerability exists in Wi-Fi AP UNIT allows. If this vulnerability is exploited, a remote authenticated attacker with an administrative privilege to execute an arbitrary OS command. Affected products and versions are as follows: AC-PD-WAPU v1.05_B04 and earlier, AC-PD-WAPUM v1.05_B04 and earlier, AC-PD-WAPU-P v1.05_B04P and earlier, AC-PD-WAPUM-P v1.05_B04P and earlier, AC-WAPU-300 v1.00_B07 and earlier, AC-WAPUM-300 v1.00_B07 and earlier, AC-WAPU-300-P v1.00_B07 and earlier, and AC-WAPUM-300-P v1.00_B07 and earlier
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:inaba:ac-pd-wapu_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:inaba:ac-pd-wapu:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:inaba:ac-pd-wapum_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:inaba:ac-pd-wapum:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:inaba:ac-pd-wapu-p_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:inaba:ac-pd-wapu-p:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:inaba:ac-pd-wapum-p_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:inaba:ac-pd-wapum-p:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:inaba:ac-wapu-300_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:inaba:ac-wapu-300:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:inaba:ac-wapum-300_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:inaba:ac-wapum-300:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:inaba:ac-wapum-300-p_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:inaba:ac-wapum-300-p:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:inaba:ac-wapu-300-p_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:inaba:ac-wapu-300-p:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2023-06-13 10:15

Updated : 2023-06-22 00:46


NVD link : CVE-2023-31198

Mitre link : CVE-2023-31198

CVE.ORG link : CVE-2023-31198


JSON object : View

Products Affected

inaba

  • ac-pd-wapu_firmware
  • ac-pd-wapum
  • ac-pd-wapu-p
  • ac-pd-wapum-p
  • ac-pd-wapu
  • ac-pd-wapum_firmware
  • ac-wapu-300_firmware
  • ac-wapu-300-p
  • ac-pd-wapu-p_firmware
  • ac-wapu-300
  • ac-wapum-300-p
  • ac-wapum-300-p_firmware
  • ac-pd-wapum-p_firmware
  • ac-wapu-300-p_firmware
  • ac-wapum-300_firmware
  • ac-wapum-300
CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')