Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-23912


A vulnerability, found in EdgeRouters Version 2.0.9-hotfix.5 and earlier and UniFi Security Gateways (USG) Version 4.4.56 and earlier with their DHCPv6 prefix delegation set to dhcpv6-stateless or dhcpv6-stateful, allows a malicious actor directly connected to the WAN interface of an affected device to create a remote code execution vulnerability.


Published

2023-02-09T20:15:11.740

Last Modified

2025-03-24T19:15:41.460

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 8.8 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-75
  • Type: Primary
    CWE-94
  • Type: Secondary
    CWE-94

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System ui usg_firmware < 4.4.57 Yes
Hardware ui usg - No
Operating System ui usg-pro-4_firmware < 4.4.57 Yes
Hardware ui usg-pro-4 - No
Operating System ui er-10x_firmware < 2.0.9 Yes
Operating System ui er-10x_firmware 2.0.9 Yes
Operating System ui er-10x_firmware 2.0.9 Yes
Operating System ui er-10x_firmware 2.0.9 Yes
Operating System ui er-10x_firmware 2.0.9 Yes
Hardware ui er-10x - No
Operating System ui er-12_firmware < 2.0.9 Yes
Operating System ui er-12_firmware 2.0.9 Yes
Operating System ui er-12_firmware 2.0.9 Yes
Operating System ui er-12_firmware 2.0.9 Yes
Operating System ui er-12_firmware 2.0.9 Yes
Hardware ui er-12 - No
Operating System ui er-12p_firmware < 2.0.9 Yes
Operating System ui er-12p_firmware 2.0.9 Yes
Operating System ui er-12p_firmware 2.0.9 Yes
Operating System ui er-12p_firmware 2.0.9 Yes
Operating System ui er-12p_firmware 2.0.9 Yes
Hardware ui er-12p - No
Operating System ui er-4_firmware < 2.0.9 Yes
Operating System ui er-4_firmware 2.0.9 Yes
Operating System ui er-4_firmware 2.0.9 Yes
Operating System ui er-4_firmware 2.0.9 Yes
Operating System ui er-4_firmware 2.0.9 Yes
Hardware ui er-4 - No
Operating System ui er-6p_firmware < 2.0.9 Yes
Operating System ui er-6p_firmware 2.0.9 Yes
Operating System ui er-6p_firmware 2.0.9 Yes
Operating System ui er-6p_firmware 2.0.9 Yes
Operating System ui er-6p_firmware 2.0.9 Yes
Hardware ui er-6p - No
Operating System ui er-8-xg_firmware < 2.0.9 Yes
Operating System ui er-8-xg_firmware 2.0.9 Yes
Operating System ui er-8-xg_firmware 2.0.9 Yes
Operating System ui er-8-xg_firmware 2.0.9 Yes
Operating System ui er-8-xg_firmware 2.0.9 Yes
Hardware ui er-8-xg - No
Operating System ui er-x_firmware < 2.0.9 Yes
Operating System ui er-x_firmware 2.0.9 Yes
Operating System ui er-x_firmware 2.0.9 Yes
Operating System ui er-x_firmware 2.0.9 Yes
Operating System ui er-x_firmware 2.0.9 Yes
Hardware ui er-x - No
Operating System ui er-x-sfp_firmware < 2.0.9 Yes
Operating System ui er-x-sfp_firmware 2.0.9 Yes
Operating System ui er-x-sfp_firmware 2.0.9 Yes
Operating System ui er-x-sfp_firmware 2.0.9 Yes
Operating System ui er-x-sfp_firmware 2.0.9 Yes
Hardware ui er-x-sfp - No

References