CVE-2023-1966
Summary
| CVE | CVE-2023-1966 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-04-28 19:15:00 UTC |
| Updated | 2023-05-09 17:53:00 UTC |
| Description | Instruments with Illumina Universal Copy Service v1.x and v2.x contain an unnecessary privileges vulnerability. An unauthenticated malicious actor could upload and execute code remotely at the operating system level, which could allow an attacker to change settings, configurations, software, or access sensitive data on the affected product. |
Risk And Classification
Problem Types: CWE-269
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Illumina | Iscan | - | All | All | All |
| Operating System | Illumina | Iscan Firmware | 4.0.0 | All | All | All |
| Operating System | Illumina | Iscan Firmware | 4.0.5 | All | All | All |
| Hardware | Illumina | Iseq 100 | - | All | All | All |
| Operating System | Illumina | Iseq 100 Firmware | All | All | All | All |
| Hardware | Illumina | Miniseq | - | All | All | All |
| Operating System | Illumina | Miniseq Firmware | All | All | All | All |
| Hardware | Illumina | Miseq | - | All | All | All |
| Hardware | Illumina | Miseqdx | - | All | All | All |
| Operating System | Illumina | Miseqdx Firmware | All | All | All | All |
| Operating System | Illumina | Miseqdx Firmware | 4.0 | All | All | All |
| Operating System | Illumina | Miseq Firmware | All | All | All | All |
| Hardware | Illumina | Nextseq 1000 | - | All | All | All |
| Operating System | Illumina | Nextseq 1000 Firmware | 1.4.1 | All | All | All |
| Hardware | Illumina | Nextseq 2000 | - | All | All | All |
| Operating System | Illumina | Nextseq 2000 Firmware | 1.4.1 | All | All | All |
| Hardware | Illumina | Nextseq 500 | - | All | All | All |
| Operating System | Illumina | Nextseq 500 Firmware | 4.0 | All | All | All |
| Hardware | Illumina | Nextseq 550 | - | All | All | All |
| Hardware | Illumina | Nextseq 550dx | - | All | All | All |
| Operating System | Illumina | Nextseq 550dx Firmware | All | All | All | All |
| Operating System | Illumina | Nextseq 550dx Firmware | 4.0 | All | All | All |
| Operating System | Illumina | Nextseq 550dx Firmware | All | All | All | All |
| Operating System | Illumina | Nextseq 550 Firmware | 4.0 | All | All | All |
| Hardware | Illumina | Novaseq 6000 | - | All | All | All |
| Operating System | Illumina | Novaseq 6000 Firmware | 1.8 | All | All | All |
| Operating System | Illumina | Novaseq 6000 Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Illumina Universal Copy Service | CISA | MISC | www.cisa.gov | |
| Illumina Universal Copy Service Vulnerability | MISC | support.illumina.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.