CVE-2023-23296
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Exploitability: 2.8 / Impact: 3.6
Source: NVD
Description
Korenix JetWave 4200 Series 1.3.0 and JetWave 3200 Series 1.6.0 are vulnerable to Denial of Service via /goform/formDefault.
Affected (15)
Products: Korenix: Jetwave 2212g Firmware, Jetwave 2212x Firmware, Jetwave 2212s Firmware, Jetwave 2211c Firmware, Jetwave 2411 Firmware, Jetwave 2111 Firmware, Jetwave 2411l Firmware, Jetwave 2111l Firmware, Jetwave 2414 Firmware, Jetwave 2114 Firmware, Jetwave 2424 Firmware, Jetwave 2460 Firmware, Jetwave 4221hp E Firmware, Jetwave 3220 V3 Firmware, Jetwave 3420 V3 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.3.t |
| Running on/with | Platform Versions |
|---|---|
Korenix Jetwave 2212g | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.3.0 |
| Running on/with | Platform Versions |
|---|---|
Korenix Jetwave 2212x | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.3.0 |
| Running on/with | Platform Versions |
|---|---|
Korenix Jetwave 2212s | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.6 |
| Running on/with | Platform Versions |
|---|---|
Korenix Jetwave 2211c | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.5 |
| Running on/with | Platform Versions |
|---|---|
Korenix Jetwave 2411 | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.5 |
| Running on/with | Platform Versions |
|---|---|
Korenix Jetwave 2111 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.6 |
| Running on/with | Platform Versions |
|---|---|
Korenix Jetwave 2411l | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.6 |
| Running on/with | Platform Versions |
|---|---|
Korenix Jetwave 2111l | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.4 |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.4 |
| Running on/with | Platform Versions |
|---|---|
Korenix Jetwave 2114 | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.3 |
| Running on/with | Platform Versions |
|---|---|
Korenix Jetwave 2414 | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.6 |
| Running on/with | Platform Versions |
|---|---|
Korenix Jetwave 2460 | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.3.0 |
| Running on/with | Platform Versions |
|---|---|
Korenix Jetwave 4221hp E | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.7 |
| Running on/with | Platform Versions |
|---|---|
Korenix Jetwave 3220 V3 | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.7 |
| Running on/with | Platform Versions |
|---|---|
Korenix Jetwave 3420 V3 | All versions |
References (2)
Source: cve@mitre.org
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory
Timeline
No history available yet.