CVE-2023-53963 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

SOUND4 IMPACT/FIRST/PULSE/Eco v2.x contains an unauthenticated OS command injection vulnerability that allows remote attackers to execute arbitrary shell comman…
Critical CVSS: 9.3

CVE-2023-53963

SOUND4 IMPACT/FIRST/PULSE/Eco v2.x contains an unauthenticated OS command injection vulnerability that allows remote attackers to execute arbitrary shell commands through the 'password' parameter. Attackers can exploit the login.php and index.php scripts by injecting shell commands via the 'password' POST parameter to execute commands with web server privileges.
Vendor
Sound4
Product
Impact Firmware
CWE
CWE-78
Yayın Tarihi
2025-12-22 22:16:00
Güncelleme
2026-01-13 15:42:50
Source Identifier
disclosure@vulncheck.com
KEV Date Added
-

Kategoriler

Referanslar