CVE-2023-22303

CVSS V2 None CVSS V3 None
Description
TP-Link SG105PE firmware prior to 'TL-SG105PE(UN) 1.0_1.0.0 Build 20221208' contains an authentication bypass vulnerability. Under the certain conditions, an attacker may impersonate an administrator of the product. As a result, information may be obtained and/or the product's settings may be altered with the privilege of the administrator.
Overview
  • CVE ID
  • CVE-2023-22303
  • Assigner
  • vultures@jpcert.or.jp
  • Vulnerability Status
  • Analyzed
  • Published Version
  • 2023-01-17T10:15:11
  • Last Modified Date
  • 2023-01-24T20:21:18
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
AND
cpe:2.3:o:tp-link:tl-sg105pe_firmware:1.0.0:build_20221208:*:*:*:*:*:* 1 OR
cpe:2.3:h:tp-link:tl-sg105pe:1.0:*:*:*:*:*:*:* 0 OR
History
Created Old Value New Value Data Type Notes
2023-01-17 11:15:21 Added to TrackCVE
2023-01-17 14:15:25 2023-01-17T13:24:30 CVE Modified Date updated
2023-01-17 14:15:25 Received Awaiting Analysis Vulnerability Status updated
2023-01-23 16:14:29 Awaiting Analysis Undergoing Analysis Vulnerability Status updated
2023-01-24 21:14:53 2023-01-24T20:21:18 CVE Modified Date updated
2023-01-24 21:14:53 Undergoing Analysis Analyzed Vulnerability Status updated
2023-01-24 21:14:54 Weakness Enumeration new
2023-01-24 21:14:54 CPE Information updated