CVE-2023-3331 - CVE House
Back to Database
Status published Unknown CVE-2023-3331

Improper Limitation of a Pathname to a Restricted Directory vulnerability...

Vulnerability Description

Improper Limitation of a Pathname to a Restricted Directory vulnerability in NEC Corporation Aterm Aterm WG2600HP2, WG2600HP, WG2200HP, WG1800HP2, WG1800HP, WG1400HP, WG600HP, WG300HP, WF300HP, WR9500N, WR9300N, WR8750N, WR8700N, WR8600N, WR8370N, WR8175N and WR8170N all versions allows a attacker to delete specific files in the product.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-3331

Credits & Attribution

The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:

  • Mr. Taizoh Tsukamoto in Mitsui Bussan Secure Directions, Inc.

Affected Vendor

NEC Corporation

View all reports →

Affected Software

Aterm WG2600HP2, Aterm WG2600HP, Aterm WG2200HP, Aterm WG1800HP2, Aterm WG1800HP, Aterm WG1400HP, Aterm WG600HP, Aterm WG300HP, Aterm WF300HP, Aterm WR9500N, Aterm WR9300N, Aterm WR8750N, Aterm WR8700N, Aterm WR8600N, Aterm WR8370N, Aterm WR8175N, Aterm WR8170N
Vulnerable Versions:
all versions

Timeline

Official Publish: June 28th, 2023
Last Modified: December 4th, 2024
Added to House: July 22nd, 2026

CVSS Vectors

No vector data available

Weaknesses (CWE)