s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

CVE-2023-1731

📛 CVE Title

Improper Input Validation in Meinberg LTOS

Description

In Meinbergs LTOS versions prior to V7.06.013, the configuration file upload function would not correctly validate the input, which would allow an remote authenticated attacker with high privileges to execute arbitrary commands.

Overview

State
PUBLISHED
Assigner (CNA)
CERTVDE
CVSS severity
HIGH
CVSS score
CVSS 7.2 / 10 7.2 7.2 / 10
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Effective score
7.2 / 10 HIGH source: CNA overview
CWE(s)
CWE-434
Reserved
2023-03-30
Published
2023-04-24 15:36 UTC
Last updated
2025-02-04 20:16 UTC
Source
https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2023/1xxx/CVE-2023-1731.json
Linked Threat
CVE-2023-1731 — Improper Input Validation in Meinberg LTOS

European Union Vulnerability Database ENISA EUVD

ENISA's official EU repository for curated vulnerability intelligence. Carries a separate identifier (EUVD-YYYY-NNNN) and frequently exposes an earlier-published description + CVSS than NVD does.

EUVD ID
EUVD-2023-23954
Assigner
CERTVDE
Published
Apr 24, 2023, 1:36:03 PM
Updated
Feb 4, 2025, 7:16:58 PM
EUVD base score (CVSS 3.1)
7.2 / 10
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
EUVD-reported EPSS
0.5400
Vendors
Meinberg
Products
LTOS (0.0.0 <7.06.013)
Aliases
GHSA-7j3x-mrc3-42pg

ENISA description: In Meinbergs LTOS versions prior to V7.06.013, the configuration file upload function would not correctly validate the input, which would allow an remote authenticated attacker with high privileges to execute arbitrary commands.

EUVD references (1)

Affected products (1)

VendorProductVersionsPlatforms
Meinberg LTOS 0.0.0 (affected)

Vendor references (1)

References embedded in the original CVE record by the assigning CNA.

Web references (0)

DuckDuckGo results ranked by threat-intel / vendor advisory domains. Generated by the 🔎 Find references (web) button above — same flow as the Remediations search.

No web references attached yet.

Remediations (17)

Remediations are stored against the linked Threat row; the list below is deduplicated across both pages.

  • web:www.nist.gov

    A revision to NIST's catalog of security and privacy safeguards aims to help organizations better manage risks related to software updates and patches. The catalog revision is part of NIST's response to a recent executive order on strengthening the nation's cybersecurity. Completed with the help of a real-time commenting system, the revision is available in several different formats ...

    2026-06-03 03:29 UTC
  • web:cybersecuritynews.com

    BeyondTrust has disclosed a critical pre-authentication remote code execution vulnerability affecting its Remote Support (RS) and Privileged Remote Access (PRA) platforms, potentially exposing thousands of organizations to system compromise.

    2026-06-03 03:29 UTC
  • web:krebsonsecurity.com

    Microsoft today pushed updates to fix at least 56 security flaws in its Windows operating systems and supported software. This final Patch Tuesday of 2025 tackles one zero-day bug that is already ...

    2026-06-03 03:29 UTC
  • web:learn.microsoft.com

    Hotpatch updates streamline the installation process and enhance compliance efficiency. No changes are required to your existing update ring configurations. Your existing ring configurations are honored alongside hotpatch update policies. The Hotpatch quality update report provides a per-policy level view of the current update statuses for all devices that receive hotpatch updates. Hotpatch ...

    2026-06-03 03:29 UTC
  • web:www.tenable.com

    What is patch management? At its core, patch management is the formal process your organization uses to identify, acquire, test, and deploy software updates, or "patches," to your IT assets. Vendors release patches for several reasons: Fix software bugs Improve performance Add new features Fix vulnerabilities that attackers could otherwise exploit A patch can be a minor, single fix (a "hotfix ...

    2026-06-03 03:29 UTC
  • web:msrc.microsoft.com

    The Microsoft Security Response Center (MSRC) investigates all reports of security vulnerabilities affecting Microsoft products and services, and provides the information here as part of the ongoing effort to help you manage security risks and help keep your systems protected.

    2026-06-03 03:29 UTC
  • web:blog.qualys.com

    Key Takeaways RedSun is a critical zero-day vulnerability in Microsoft Defender that allows low-privileged users to gain SYSTEM access No patch is currently available, leaving all Defender-enabled Windows systems potentially exposed Qualys VMDR detects affected assets instantly (QID 92382) TruRisk™ Eliminate enables immediate mitigation , removing exploitability without waiting for a fix ...

    2026-06-03 03:29 UTC
  • web:www.rapid7.com

    Mitigation guidance A vendor-provided patch is available to remediate CVE -2026- 1731 in on-premise deployments. BeyondTrust Remote Support (RS): Versions 25.3.1 and prior are affected by CVE -2026- 1731 . CVE -2026- 1731 is fixed in 25.3.2 and later. BeyondTrust Privileged Remote Access (PRA): Versions 24.3.4 and prior are affected by CVE -2026- 1731 .

    2026-05-22 05:40 UTC
  • web:www.scworld.com

    If left unpatched, the vulnerability could let an unauthenticated attacker achieve remote code execution (RCE) by sending specially-crafted requests. Now that it's confirmed by CISA that CVE -2026- 1731 has been exploited in ransomware attacks, security experts say teams need to patch right away.

    2026-05-22 05:40 UTC
  • web:www.windowslatest.com

    Microsoft has confirmed that the Windows 11 January 2026 Update is causing at least three major issues, rolling out fixes for two bugs.

    2026-05-22 05:40 UTC
  • web:www.zdnet.com

    Why you need Microsoft's new emergency Windows patch - and the black-screen bug to watch for While Microsoft has been fixing bugs caused by the Patch Tuesday update, another glitch has surfaced.

    2026-05-22 05:40 UTC
  • web:cybersecuritynews.com

    Microsoft released an out-of-band hotpatch update on March 13, 2026, addressing serious security vulnerabilities in Windows 11 versions 24H2 and 25H2.

    2026-05-22 05:40 UTC
  • web:petervanderwoude.nl

    This week is all about the latest changes in updating Windows 11 devices. That change is the introduction of hotpatch updates for Windows 11 Enterprise. Hotpatching helps organizations with keeping Windows secure, while minimizing the disruptions for the user. A significant step in keeping Windows more secure and productive. Hotpatching removes the requirement for Windows…

    2026-05-22 05:40 UTC
  • web:portal.msrc.microsoft.com

    The Security Update Guide provides information on the latest Microsoft security updates, helping users understand and address potential vulnerabilities effectively.

    2026-05-22 05:40 UTC
  • web:www.bleepingcomputer.com

    CISA ordered U.S. government agencies on Friday to secure their BeyondTrust Remote Support instances against an actively exploited vulnerability within three days.

    2026-05-22 05:40 UTC
  • web:www.computerweekly.com

    Microsoft has dropped a grand total of 57 fixes to mark the third Patch Tuesday update of 2025 - rising to closer to 70 when third-party vulns are taken into account - including six zero-days ...

    2026-05-22 05:40 UTC
  • web:www.pcworld.com

    This month's Patch Tuesday includes an actively exploited Office zero-day vulnerability and several critical RCE bugs in Windows and Remote Desktop.

    2026-05-22 05:40 UTC

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.

Raw JSON

The full cvelistV5 record. Download as CVE-2023-1731.json.

{
  "containers": {
    "adp": [
      {
        "providerMetadata": {
          "dateUpdated": "2024-08-02T05:57:25.243Z",
          "orgId": "af854a3a-2127-422b-91ae-364da2661108",
          "shortName": "CVE"
        },
        "references": [
          {
            "tags": [
              "x_transferred"
            ],
            "url": "https://www.meinbergglobal.com/english/news/meinberg-security-advisory-mbgsa-2023-02-lantime-firmware-v7-06-013.htm"
          }
        ],
        "title": "CVE Program Container"
      },
      {
        "metrics": [
          {
            "other": {
              "content": {
                "id": "CVE-2023-1731",
                "options": [
                  {
                    "Exploitation": "none"
                  },
                  {
                    "Automatable": "no"
                  },
                  {
                    "Technical Impact": "total"
                  }
                ],
                "role": "CISA Coordinator",
                "timestamp": "2025-02-04T19:16:33.062158Z",
                "version": "2.0.3"
              },
              "type": "ssvc"
            }
          }
        ],
        "providerMetadata": {
          "dateUpdated": "2025-02-04T19:16:58.162Z",
          "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "shortName": "CISA-ADP"
        },
        "title": "CISA ADP Vulnrichment"
      }
    ],
    "cna": {
      "affected": [
        {
          "defaultStatus": "unaffected",
          "product": "LTOS",
          "vendor": "Meinberg",
          "versions": [
            {
              "lessThan": "7.06.013",
              "status": "affected",
              "version": "0.0.0",
              "versionType": "semver"
            }
          ]
        }
      ],
      "credits": [
        {
          "lang": "en",
          "type": "finder",
          "user": "00000000-0000-4000-9000-000000000000",
          "value": "Many thanks to Noam Moshe of Claroty for reporting this vulnerability."
        }
      ],
      "descriptions": [
        {
          "lang": "en",
          "supportingMedia": [
            {
              "base64": false,
              "type": "text/html",
              "value": "In Meinbergs LTOS versions prior to V7.06.013, the configuration file upload function would not correctly validate the input, which would allow an remote authenticated attacker with high privileges to execute arbitrary commands.<br>"
            }
          ],
          "value": "In Meinbergs LTOS versions prior to V7.06.013, the configuration file upload function would not correctly validate the input, which would allow an remote authenticated attacker with high privileges to execute arbitrary commands.\n"
        }
      ],
      "metrics": [
        {
          "cvssV3_1": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 7.2,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "HIGH",
            "scope": "UNCHANGED",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "format": "CVSS",
          "scenarios": [
            {
              "lang": "en",
              "value": "GENERAL"
            }
          ]
        }
      ],
      "problemTypes": [
        {
          "descriptions": [
            {
              "cweId": "CWE-434",
              "description": "CWE-434 Unrestricted Upload of File with Dangerous Type",
              "lang": "en",
              "type": "CWE"
            }
          ]
        }
      ],
      "providerMetadata": {
        "dateUpdated": "2023-05-23T05:49:20.632Z",
        "orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
        "shortName": "CERTVDE"
      },
      "references": [
        {
          "url": "https://www.meinbergglobal.com/english/news/meinberg-security-advisory-mbgsa-2023-02-lantime-firmware-v7-06-013.htm"
        }
      ],
      "source": {
        "defect": [
          "CERT@VDE#64425"
        ],
        "discovery": "UNKNOWN"
      },
      "title": "Improper Input Validation in Meinberg LTOS",
      "x_generator": {
        "engine": "Vulnogram 0.1.0-dev"
      }
    }
  },
  "cveMetadata": {
    "assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
    "assignerShortName": "CERTVDE",
    "cveId": "CVE-2023-1731",
    "datePublished": "2023-04-24T13:36:03.117Z",
    "dateReserved": "2023-03-30T15:06:41.196Z",
    "dateUpdated": "2025-02-04T19:16:58.162Z",
    "state": "PUBLISHED"
  },
  "dataType": "CVE_RECORD",
  "dataVersion": "5.1"
}