Security Advisory

CVE-2023-45744

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-04-17 12:55:48
Last updated 2025-11-04 18:17:46
Assigner talos
State PUBLISHED

Description

A data integrity vulnerability exists in the web interface /cgi-bin/upload_config.cgi functionality of Peplink Smart Reader v1.2.0 (in QEMU). A specially crafted HTTP request can lead to configuration modification. An attacker can make an unauthenticated HTTP request to trigger this vulnerability.