Vulnerability Intelligence Report
Netis Netcore Router Backup param.file.tgz cleartext storage in a file or on disk
CVE-2023-0114
A vulnerability was found in Netis Netcore Router. It has been rated as problematic. Affected by this issue is some unknown functionality of the file param.file.tgz of the component Backup Handler. The manipulation leads to cleartext storage in a file or on disk. Local access is required to approach this attack. The identifier of this vulnerability is VDB-217592.
No Active Exploit Signals
CVSS Base Score
3.3
LOW
Exploitability:1.9
Impact Score:1.5
EPSS Probability:0.14%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Weaknesses (CWE)
CWE-313 ↗CWE-313 Cleartext Storage in a File or on Disk
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| Netis | Netcore Router | n/a (affected) |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
EPSS Score
0.139%
GitHub Advisory
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | VulDB · Researcher · Switzerland |
| Reserved | 2023-01-07T08:23:17 |
| Published | 2023-01-07T08:24:17 |
| Last Updated | 2024-08-02T05:02:43 |
Community Chatter & Buzz