#VU86167 Local File Inclusion in Sharp NEC Display Solutions products - CVE-2023-7077

 

#VU86167 Local File Inclusion in Sharp NEC Display Solutions products - CVE-2023-7077

Published: February 6, 2024


Vulnerability identifier: #VU86167
Vulnerability risk: High
CVSSv4.0: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Amber
CVE-ID: CVE-2023-7077
CWE-ID: CWE-94
Exploitation vector: Remote access
Exploit availability: No public exploit available
Vulnerable software:
P403
P463
P553
P703
P801
X554UN
X464UN
X554UNS
X464UNV
X474HB
X464UNS
X554UNV
X555UNS
X555UNV
X754HB
X554HB
E705
E805
E905
UN551S
UN551VS
X551UHD
X651UHD
X841UHD
X981UHD
MD551C8
Software vendor:
Sharp NEC Display Solutions

Description

The vulnerability allows a remote attacker to execute arbitrary code on the target system.

The vulnerability exists due to improper input validation. A remote attacker can send a specially crafted request and execute arbitrary code on the target system.

Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.


Remediation

Cybersecurity Help is currently unaware of any official solution to address this vulnerability.

External links