CVE-2023-43119
An Access Control issue discovered in Extreme Networks Switch Engine (EXOS) before 32.5.1.5, also fixed in 22.7, 31.7.2 allows attackers to gain escalated privileges using crafted telnet commands via Redis server.
- Affected products
- Extreme Networks Switch Engine
- Extremenetworks Exos
- < 22.7, 31.7.2, 32.5.1.5
- CVSS 3.1
- 9.8 CRITICAL
- EPSS
- 0.6% (46th percentile)
- Weakness
- CWE-284, CWE-863
- NVD status
- Modified
- Published
- 2023-10-16
CVE-2023-43119 at NVD
1 known exploit for CVE-2023-43119
Proof-of-concept code and exploit modules indexed by Sploitus