8.8

CVE-2023-40158

Hidden functionality vulnerability in the CBC products allows a remote authenticated attacker to execute an arbitrary OS command on the device or alter its settings. As for the affected products/versions, see the detailed information provided by the vendor. Note that NR4H, NR8H, NR16H series and DR-16F, DR-8F, DR-4F, DR-16H, DR-8H, DR-4H, DR-4M41 series are no longer supported, therefore updates for those products are not provided.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
CbcNr4h Firmware Version-
   CbcNr4h Version-
CbcNr8h Firmware Version-
   CbcNr8h Version-
CbcNr16h Firmware Version-
   CbcNr16h Version-
CbcDr-16f42a Firmware Version-
   CbcDr-16f42a Version-
CbcDr-16f45at Firmware Version-
   CbcDr-16f45at Version-
CbcDr-8f42a Firmware Version-
   CbcDr-8f42a Version-
CbcDr-8f45at Firmware Version-
   CbcDr-8f45at Version-
CbcDr-4fx1 Firmware Version-
   CbcDr-4fx1 Version-
CbcDr-16h Firmware Version-
   CbcDr-16h Version-
CbcDr-8h Firmware Version-
   CbcDr-8h Version-
CbcDr-4h Firmware Version-
   CbcDr-4h Version-
CbcDrh8-4m41-a Firmware Version-
   CbcDrh8-4m41-a Version-
CbcNr8-4m71 Firmware Version-
   CbcNr8-4m71 Version-
CbcNr8-8m72 Firmware Version-
   CbcNr8-8m72 Version-
CbcNr-16m Firmware Version-
   CbcNr-16m Version-
CbcNr-16f85-8pra Firmware Version-
   CbcNr-16f85-8pra Version-
CbcNr-16f82-16p Firmware Version-
   CbcNr-16f82-16p Version-
CbcNr-4f Firmware Version-
   CbcNr-4f Version-
CbcNr-8f Firmware Version-
   CbcNr-8f Version-
CbcDr-16m52 Firmware Version-
   CbcDr-16m52 Version-
CbcDr-16m52-av Firmware Version-
   CbcDr-16m52-av Version-
CbcDr-8m52-av Firmware Version-
   CbcDr-8m52-av Version-
CbcDr-4m51-av Firmware Version-
   CbcDr-4m51-av Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 5.59% 0.901
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 8.8 2.8 5.9
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
134c704f-9b21-4f2e-91b3-4a467353bcc0 8.8 2.8 5.9
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE-912 Hidden Functionality

The product contains functionality that is not documented, not part of the specification, and not accessible through an interface or command sequence that is obvious to the product's users or administrators.