SEPTEMBER 23, 2026
Live Feed
Back to database
Case File

CVE-2023-27407

CRITICAL · CVSS 9.9 EPSS 1.30%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2023-05-09 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 9.9. It may be remotely exploitable.

CVE
CVE-2023-27407
Severity
CRITICAL
CVSS
9.9
EPSS
1.30%

Original NVD Description

A vulnerability has been identified in SCALANCE LPE9403 (All versions < V2.1). The web based management of affected device does not properly validate user input, making it susceptible to command injection. This could allow an authenticated remote attacker to access the underlying operating system as the root user.

Related CVEs

Other vulnerabilities affecting the same vendor(s)