CVE-2023-23294

Summary

CVECVE-2023-23294
StatePUBLIC
Assigner[email protected]
Source PriorityCVE Program / NVD first with legacy fallback
Published2023-02-23 23:15:00 UTC
Updated2023-03-06 18:42:00 UTC
DescriptionKorenix JetWave 4200 Series 1.3.0 and JetWave 3000 Series 1.6.0 are vulnerable to Command Injection. An attacker can modify the file_name parameter to execute commands as root.

Risk And Classification

Problem Types: CWE-77

NVD Known Affected Configurations (CPE 2.3)

TypeVendorProductVersionUpdateEditionLanguage
Hardware Korenix Jetwave 2111 - All All All
Hardware Korenix Jetwave 2111l - All All All
Operating System Korenix Jetwave 2111l Firmware All All All All
Operating System Korenix Jetwave 2111 Firmware All All All All
Hardware Korenix Jetwave 2114 - All All All
Operating System Korenix Jetwave 2114 Firmware All All All All
Hardware Korenix Jetwave 2211c - All All All
Operating System Korenix Jetwave 2211c Firmware All All All All
Hardware Korenix Jetwave 2212g - All All All
Operating System Korenix Jetwave 2212g Firmware 1.3.t All All All
Hardware Korenix Jetwave 2212s - All All All
Operating System Korenix Jetwave 2212s Firmware 1.3.0 All All All
Hardware Korenix Jetwave 2212x - All All All
Operating System Korenix Jetwave 2212x Firmware 1.3.0 All All All
Hardware Korenix Jetwave 2411 - All All All
Hardware Korenix Jetwave 2411l - All All All
Operating System Korenix Jetwave 2411l Firmware All All All All
Operating System Korenix Jetwave 2411 Firmware All All All All
Hardware Korenix Jetwave 2414 - All All All
Operating System Korenix Jetwave 2414 Firmware All All All All
Operating System Korenix Jetwave 2424 Firmware All All All All
Hardware Korenix Jetwave 2460 - All All All
Operating System Korenix Jetwave 2460 Firmware All All All All
Hardware Korenix Jetwave 3220 V3 - All All All
Operating System Korenix Jetwave 3220 V3 Firmware All All All All
Hardware Korenix Jetwave 3420 V3 - All All All
Operating System Korenix Jetwave 3420 V3 Firmware All All All All
Hardware Korenix Jetwave 4221hp-e - All All All
Operating System Korenix Jetwave 4221hp-e Firmware All All All All

References

ReferenceSourceLinkTags
[EN] Multiple Vulnerabilities in Korenix JetWave Series - CyberDanube MISC cyberdanube.com
CVE Program record CVE.ORG www.cve.org canonical
NVD vulnerability detail NVD nvd.nist.gov canonical, analysis
© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

CVE.report and Source URL Uptime Status status.cve.report