CVE-2023-2003 Information

Description

Embedded malicious code vulnerability in Vision1210 in the build 5 of operating system version 4.3 which could allow a remote attacker to store base64-encoded malicious code in the device’s data tables via the PCOM protocol which can then be retrieved by a client and executed on the device.

Reference

https://www.incibe.es/en/incibe-cert/notices/aviso-sci/embedded-malicious-code-vulnerability-unitronics-vision1210

Share on: