CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.1. Its EPSS score suggests a 37.7% probability of exploitation in the next 30 days.
CVE
CVE-2023-39367
Severity
CRITICAL
CVSS
9.1
EPSS
37.68%
Original NVD Description
An OS command injection vulnerability exists in the web interface mac2name functionality of Peplink Smart Reader v1.2.0 (in QEMU). A specially crafted HTTP request can lead to arbitrary command execution. An attacker can make an authenticated HTTP request to trigger this vulnerability.
Related CVEs
Other vulnerabilities affecting the same vendor(s)