The web interface on the RIGOL MSO5000 digital oscilloscope with firmware 00.01.03.00.03 allows remote attackers to execute arbitrary code via shell metacharacters in pass1 to the webcontrol changepwd.cgi application.
Metrics
Affected Vendors & Products
References
History
Wed, 30 Oct 2024 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-10-30T16:13:25.627Z
Reserved: 2023-07-16T00:00:00
Link: CVE-2023-38378
Updated: 2024-08-02T17:39:13.079Z
Status : Modified
Published: 2023-07-16T17:15:09.277
Modified: 2024-11-21T08:13:26.420
Link: CVE-2023-38378
No data.