CVE Feed

    Dashboard / CVE / CVE-2023-47610

    CVE-2023-47610

    A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists in Telit Cinterion EHS5/6/8 that could allow a remote unauthenticated attacker to execute arbitrary code on the targeted system by sending a specially crafted SMS message.

    Published:Nov 9, 2023
    Last Modified:Feb 27, 2025
    EPS:Nov 9, 2023
    EPSS Score:0.03417
    CVSS Score:8.1

    Affected Products

    Vendor
    Telit
    Product
    Bgs5
    Vendor
    Telit
    Product
    Bgs5 Firmware
    Vendor
    Telit
    Product
    Ehs5
    Vendor
    Telit
    Product
    Ehs5 Firmware
    Vendor
    Telit
    Product
    Ehs6
    Vendor
    Telit
    Product
    Ehs6 Firmware
    Vendor
    Telit
    Product
    Ehs8
    Vendor
    Telit
    Product
    Ehs8 Firmware
    Vendor
    Telit
    Product
    Els61
    Vendor
    Telit
    Product
    Els61 Firmware
    Vendor
    Telit
    Product
    Els81
    Vendor
    Telit
    Product
    Els81 Firmware
    Vendor
    Telit
    Product
    Pds5
    Vendor
    Telit
    Product
    Pds5 Firmware
    Vendor
    Telit
    Product
    Pds6
    Vendor
    Telit
    Product
    Pds6 Firmware
    Vendor
    Telit
    Product
    Pds8
    Vendor
    Telit
    Product
    Pds8 Firmware
    Vendor
    Telit
    Product
    Pls62
    Vendor
    Telit
    Product
    Pls62 Firmware

    Exploits

    No exploit reference

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High