CVE-2023-46690: high-severity vulnerability in Delta Electronics InfraSuite Device Master
Delta Electronics InfraSuite Device Master Path Traversal
Published · Updated
21Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 8.8epss 1.9%
exploitation probability
1.9%top 22% of all CVEs
observed exploitation
nono source reports it
In Delta Electronics InfraSuite Device Master v.1.0.7, a vulnerability exists that allows an attacker to write to any file to any location of the filesystem, which could lead to remote code execution.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected products
Delta Electronics · InfraSuite Device MasterRelated CVEs — Delta Electronics InfraSuite Device Master
In the same product, most dangerous first.
CVE-2023-1133CRITICALCVE-2023-1133EPSS 50.0%CVE-2022-41772CRITICALCVE-2022-41772EPSS 24.9%CVE-2022-41657CRITICALCVE-2022-41657EPSS 20.9%CVE-2022-38142CRITICALCVE-2022-38142EPSS 18.2%CVE-2024-10456CRITICALDelta Electronics InfraSuite Device Master Deserialization of Untrusted DataEPSS 17.6%CVE-2023-47207CRITICALDelta Electronics InfraSuite Device Master Deserialization of Untrusted DataEPSS 16.6%