CVE-2023-31198
Severity CVSS v4.0:
Pending analysis
Type:
CWE-78
OS Command Injections
Publication date:
13/06/2023
Last modified:
03/01/2025
Description
OS command injection vulnerability exists in Wi-Fi AP UNIT allows. If this vulnerability is exploited, a remote authenticated attacker with an administrative privilege to execute an arbitrary OS command. Affected products and versions are as follows: AC-PD-WAPU v1.05_B04 and earlier, AC-PD-WAPUM v1.05_B04 and earlier, AC-PD-WAPU-P v1.05_B04P and earlier, AC-PD-WAPUM-P v1.05_B04P and earlier, AC-WAPU-300 v1.00_B07 and earlier, AC-WAPUM-300 v1.00_B07 and earlier, AC-WAPU-300-P v1.00_B07 and earlier, and AC-WAPUM-300-P v1.00_B07 and earlier
Impact
Base Score 3.x
7.20
Severity 3.x
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:inaba:ac-pd-wapu_firmware:*:*:*:*:*:*:*:* | 1.05_b04 (including) | |
| cpe:2.3:h:inaba:ac-pd-wapu:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:inaba:ac-pd-wapum_firmware:*:*:*:*:*:*:*:* | 1.05_b04 (including) | |
| cpe:2.3:h:inaba:ac-pd-wapum:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:inaba:ac-pd-wapu-p_firmware:*:*:*:*:*:*:*:* | 1.05_b04p (including) | |
| cpe:2.3:h:inaba:ac-pd-wapu-p:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:inaba:ac-pd-wapum-p_firmware:*:*:*:*:*:*:*:* | 1.05_b04p (including) | |
| cpe:2.3:h:inaba:ac-pd-wapum-p:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:inaba:ac-wapu-300_firmware:*:*:*:*:*:*:*:* | 1.00_b07 (including) | |
| cpe:2.3:h:inaba:ac-wapu-300:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:inaba:ac-wapum-300_firmware:*:*:*:*:*:*:*:* | 1.00_b07 (including) | |
| cpe:2.3:h:inaba:ac-wapum-300:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:inaba:ac-wapum-300-p_firmware:*:*:*:*:*:*:*:* | 1.00_b07 (including) | |
| cpe:2.3:h:inaba:ac-wapum-300-p:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:inaba:ac-wapu-300-p_firmware:*:*:*:*:*:*:*:* | 1.00_b07 (including) |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://jvn.jp/en/jp/JVN28412757/
- https://www.inaba.co.jp/abaniact/news/Wi-Fi_AP_UNIT%E3%81%AB%E3%81%8A%E3%81%91%E3%82%8B%E8%A4%87%E6%95%B0%E3%81%AE%E8%84%86%E5%BC%B1%E6%80%A7%E3%81%AB%E3%81%A4%E3%81%84%E3%81%A6.pdf
- https://jvn.jp/en/jp/JVN28412757/
- https://www.inaba.co.jp/abaniact/news/Wi-Fi_AP_UNIT%E3%81%AB%E3%81%8A%E3%81%91%E3%82%8B%E8%A4%87%E6%95%B0%E3%81%AE%E8%84%86%E5%BC%B1%E6%80%A7%E3%81%AB%E3%81%A4%E3%81%84%E3%81%A6.pdf



