Security Advisory

CVE-2023-27409

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-05-09 11:51:24
Last updated 2025-01-28 16:47:12
Assigner siemens
State PUBLISHED

Description

A vulnerability has been identified in SCALANCE LPE9403 (All versions < V2.1). A path traversal vulnerability was found in the `deviceinfo` binary via the `mac` parameter. This could allow an authenticated attacker with access to the SSH interface on the affected device to read the contents of any file named `address`.