← Back to browse · API

CVE-2023-5684

Severity
MEDIUM
CVSS
4.7
EPSS
0.78438
Risk score
46.25
CISA KEV
No
PoC
No
Published
2023-10-21
Modified
2024-09-12
First seen
2026-08-07
Aliases
EUVD-2023-57975, GHSA-229M-W66G-MJPH
Products
Byzoro:Smart S85F Management Platform 20231012
Sources
euvd EUVD-2023-57975

Description

A vulnerability was found in Byzoro Smart S85F Management Platform up to 20231012. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /importexport.php. The manipulation leads to os command injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-243061 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

References