216.73.216.6

CVE-2023-43478

· Published 20/09/2023 16:15 · Modified 21/12/2025 07:34 · Author: The MITRE Corporation

Labels: CVE-2023-43478

Essential information

Published
20/09/2023 16:15
Modified
21/12/2025 07:34
Author
The MITRE Corporation
Creator
The MITRE Corporation
CVSS
8.8 HIGH (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:A/C:H/I:H/A:H

CVSS metrics

Description

fake_upload.cgi on the Telstra Smart Modem Gen 2 (Arcadyan LH1000), firmware versions < 0.18.15r, allows unauthenticated attackers to upload firmware images and configuration backups, which could allow them to alter the firmware or the configuration on the device, ultimately leading to code execution as root.

NVD status

NVD
View on NVD