CVE-2023-31473

MEDIUMCVSS 4.9/10EPSS 3.87%

Last modified

CVE-2023-31473 is a medium-severity vulnerability rated 4.9/10 on the CVSS scale. An issue was discovered on GL.iNet devices before 3.216. There is an arbitrary file write in which an empty file can be created anywhere on the filesystem. EPSS estimates a 3.87% chance of exploitation in the next 30 days.

Description

An issue was discovered on GL.iNet devices before 3.216. There is an arbitrary file write in which an empty file can be created anywhere on the filesystem. This is caused by a command injection vulnerability with a filter applied. Through the software installation feature, it is possible to inject arbitrary parameters in a request to cause opkg to read an arbitrary file name while using root privileges. The -f option can be used with a configuration file.

Metrics

CVSS 3.1
4.9/10

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

EPSS Probability
3.87%

88.8th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
Gl-InetGl-S20 Firmware< 3.216
Gl-InetGl-X3000 Firmware< 3.216
Gl-InetGl-Mt3000 Firmware< 3.216
Gl-InetGl-Mt2500 Firmware< 3.216
Gl-InetGl-Mt2500a Firmware< 3.216
Gl-InetGl-Axt1800 Firmware< 3.216
Gl-InetGl-A1300 Firmware< 3.216
Gl-InetGl-Ax1800 Firmware< 3.216
Gl-InetGl-Sft1200 Firmware< 3.216
Gl-InetGl-Mt1300 Firmware< 3.216
Gl-InetGl-E750 Firmware< 3.216
Gl-InetGl-Mv1000 Firmware< 3.216
Gl-InetGl-Mv1000w Firmware< 3.216
Gl-InetGl-S10 Firmware< 3.216
Gl-InetGl-S200 Firmware< 3.216
Gl-InetGl-S1300 Firmware< 3.216
Gl-InetGl-Sf1200 Firmware< 3.216
Gl-InetGl-B1300 Firmware< 3.216
Gl-InetGl-B2200 Firmware< 3.216
Gl-InetGl-Ap1300 Firmware< 3.216
Gl-InetGl-Ap1300lte Firmware< 3.216
Gl-InetGl-X1200 Firmware< 3.216
Gl-InetGl-X750 Firmware< 3.216
Gl-InetGl-X300b Firmware< 3.216
Gl-InetGl-Xe300 Firmware< 3.216
Gl-InetGl-Ar750s Firmware< 3.216
Gl-InetGl-Ar750 Firmware< 3.216
Gl-InetGl-Mifi Firmware< 3.216
Gl-InetGl-Mt300n-V2 Firmware< 3.216
Gl-InetGl-Ar300m Firmware< 3.216
Gl-InetGl-Usb150 Firmware< 3.216
Gl-InetMicrouter-N300 Firmware< 3.216

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2023-31473?
An issue was discovered on GL.iNet devices before 3.216. There is an arbitrary file write in which an empty file can be created anywhere on the filesystem. This is caused by a command injection vulnerability with a filter applied. Through the software installation feature, it is possible to inject arbitrary parameters in a request to cause opkg to read an arbitrary file name while using root privileges. The -f option can be used with a configuration file.
How severe is CVE-2023-31473?
CVE-2023-31473 has a CVSS score of 4.9/10 (MEDIUM severity). The EPSS model estimates a 3.87% probability of exploitation in the next 30 days.
How do I fix CVE-2023-31473?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2023-31473?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST