CVE-2023-1731
📛 CVE Title
Improper Input Validation in Meinberg LTOS
Description
In Meinbergs LTOS versions prior to V7.06.013, the configuration file upload function would not correctly validate the input, which would allow an remote authenticated attacker with high privileges to execute arbitrary commands.
Overview
- State
- PUBLISHED
- Assigner (CNA)
- CERTVDE
- CVSS severity
- HIGH
- CVSS score
- 7.2 / 10
- CVSS vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H- Effective score
- 7.2 / 10 HIGH source: CNA overview
- CWE(s)
-
CWE-434 - Reserved
- 2023-03-30
- Published
- 2023-04-24 15:36 UTC
- Last updated
- 2025-02-04 20:16 UTC
- Source
- https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2023/1xxx/CVE-2023-1731.json
- Linked Threat
- CVE-2023-1731 — Improper Input Validation in Meinberg LTOS
European Union Vulnerability Database ENISA EUVD
ENISA's official EU repository for curated vulnerability intelligence. Carries a separate identifier (EUVD-YYYY-NNNN) and frequently exposes an earlier-published description + CVSS than NVD does.
- EUVD ID
-
EUVD-2023-23954 - Assigner
- CERTVDE
- Published
- Apr 24, 2023, 1:36:03 PM
- Updated
- Feb 4, 2025, 7:16:58 PM
- EUVD base score (CVSS 3.1)
-
7.2 / 10
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H - EUVD-reported EPSS
- 0.5400
- Vendors
- Meinberg
- Products
-
LTOS (0.0.0 <7.06.013)
- Aliases
-
GHSA-7j3x-mrc3-42pg
ENISA description: In Meinbergs LTOS versions prior to V7.06.013, the configuration file upload function would not correctly validate the input, which would allow an remote authenticated attacker with high privileges to execute arbitrary commands.
Affected products (1)
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Meinberg | LTOS |
0.0.0 (affected)
|
— |
Vendor references (1)
References embedded in the original CVE record by the assigning CNA.
Web references (0)
DuckDuckGo results ranked by threat-intel / vendor advisory domains. Generated by the 🔎 Find references (web) button above — same flow as the Remediations search.
No web references attached yet.
Remediations (17)
Remediations are stored against the linked Threat row; the list below is deduplicated across both pages.
-
web:www.nist.gov
A revision to NIST's catalog of security and privacy safeguards aims to help organizations better manage risks related to software updates and patches. The catalog revision is part of NIST's response to a recent executive order on strengthening the nation's cybersecurity. Completed with the help of a real-time commenting system, the revision is available in several different formats ...
2026-06-03 03:29 UTC -
web:cybersecuritynews.com
BeyondTrust has disclosed a critical pre-authentication remote code execution vulnerability affecting its Remote Support (RS) and Privileged Remote Access (PRA) platforms, potentially exposing thousands of organizations to system compromise.
2026-06-03 03:29 UTC -
web:krebsonsecurity.com
Microsoft today pushed updates to fix at least 56 security flaws in its Windows operating systems and supported software. This final Patch Tuesday of 2025 tackles one zero-day bug that is already ...
2026-06-03 03:29 UTC -
web:learn.microsoft.com
Hotpatch updates streamline the installation process and enhance compliance efficiency. No changes are required to your existing update ring configurations. Your existing ring configurations are honored alongside hotpatch update policies. The Hotpatch quality update report provides a per-policy level view of the current update statuses for all devices that receive hotpatch updates. Hotpatch ...
2026-06-03 03:29 UTC -
web:www.tenable.com
What is patch management? At its core, patch management is the formal process your organization uses to identify, acquire, test, and deploy software updates, or "patches," to your IT assets. Vendors release patches for several reasons: Fix software bugs Improve performance Add new features Fix vulnerabilities that attackers could otherwise exploit A patch can be a minor, single fix (a "hotfix ...
2026-06-03 03:29 UTC -
web:msrc.microsoft.com
The Microsoft Security Response Center (MSRC) investigates all reports of security vulnerabilities affecting Microsoft products and services, and provides the information here as part of the ongoing effort to help you manage security risks and help keep your systems protected.
2026-06-03 03:29 UTC -
web:blog.qualys.com
Key Takeaways RedSun is a critical zero-day vulnerability in Microsoft Defender that allows low-privileged users to gain SYSTEM access No patch is currently available, leaving all Defender-enabled Windows systems potentially exposed Qualys VMDR detects affected assets instantly (QID 92382) TruRisk™ Eliminate enables immediate mitigation , removing exploitability without waiting for a fix ...
2026-06-03 03:29 UTC -
web:www.rapid7.com
Mitigation guidance A vendor-provided patch is available to remediate CVE -2026- 1731 in on-premise deployments. BeyondTrust Remote Support (RS): Versions 25.3.1 and prior are affected by CVE -2026- 1731 . CVE -2026- 1731 is fixed in 25.3.2 and later. BeyondTrust Privileged Remote Access (PRA): Versions 24.3.4 and prior are affected by CVE -2026- 1731 .
2026-05-22 05:40 UTC -
web:www.scworld.com
If left unpatched, the vulnerability could let an unauthenticated attacker achieve remote code execution (RCE) by sending specially-crafted requests. Now that it's confirmed by CISA that CVE -2026- 1731 has been exploited in ransomware attacks, security experts say teams need to patch right away.
2026-05-22 05:40 UTC -
web:www.windowslatest.com
Microsoft has confirmed that the Windows 11 January 2026 Update is causing at least three major issues, rolling out fixes for two bugs.
2026-05-22 05:40 UTC -
web:www.zdnet.com
Why you need Microsoft's new emergency Windows patch - and the black-screen bug to watch for While Microsoft has been fixing bugs caused by the Patch Tuesday update, another glitch has surfaced.
2026-05-22 05:40 UTC -
web:cybersecuritynews.com
Microsoft released an out-of-band hotpatch update on March 13, 2026, addressing serious security vulnerabilities in Windows 11 versions 24H2 and 25H2.
2026-05-22 05:40 UTC -
web:petervanderwoude.nl
This week is all about the latest changes in updating Windows 11 devices. That change is the introduction of hotpatch updates for Windows 11 Enterprise. Hotpatching helps organizations with keeping Windows secure, while minimizing the disruptions for the user. A significant step in keeping Windows more secure and productive. Hotpatching removes the requirement for Windows…
2026-05-22 05:40 UTC -
web:portal.msrc.microsoft.com
The Security Update Guide provides information on the latest Microsoft security updates, helping users understand and address potential vulnerabilities effectively.
2026-05-22 05:40 UTC -
web:www.bleepingcomputer.com
CISA ordered U.S. government agencies on Friday to secure their BeyondTrust Remote Support instances against an actively exploited vulnerability within three days.
2026-05-22 05:40 UTC -
web:www.computerweekly.com
Microsoft has dropped a grand total of 57 fixes to mark the third Patch Tuesday update of 2025 - rising to closer to 70 when third-party vulns are taken into account - including six zero-days ...
2026-05-22 05:40 UTC -
web:www.pcworld.com
This month's Patch Tuesday includes an actively exploited Office zero-day vulnerability and several critical RCE bugs in Windows and Remote Desktop.
2026-05-22 05:40 UTC
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.
Raw JSON
The full cvelistV5 record. Download as CVE-2023-1731.json.
{
"containers": {
"adp": [
{
"providerMetadata": {
"dateUpdated": "2024-08-02T05:57:25.243Z",
"orgId": "af854a3a-2127-422b-91ae-364da2661108",
"shortName": "CVE"
},
"references": [
{
"tags": [
"x_transferred"
],
"url": "https://www.meinbergglobal.com/english/news/meinberg-security-advisory-mbgsa-2023-02-lantime-firmware-v7-06-013.htm"
}
],
"title": "CVE Program Container"
},
{
"metrics": [
{
"other": {
"content": {
"id": "CVE-2023-1731",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "total"
}
],
"role": "CISA Coordinator",
"timestamp": "2025-02-04T19:16:33.062158Z",
"version": "2.0.3"
},
"type": "ssvc"
}
}
],
"providerMetadata": {
"dateUpdated": "2025-02-04T19:16:58.162Z",
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP"
},
"title": "CISA ADP Vulnrichment"
}
],
"cna": {
"affected": [
{
"defaultStatus": "unaffected",
"product": "LTOS",
"vendor": "Meinberg",
"versions": [
{
"lessThan": "7.06.013",
"status": "affected",
"version": "0.0.0",
"versionType": "semver"
}
]
}
],
"credits": [
{
"lang": "en",
"type": "finder",
"user": "00000000-0000-4000-9000-000000000000",
"value": "Many thanks to Noam Moshe of Claroty for reporting this vulnerability."
}
],
"descriptions": [
{
"lang": "en",
"supportingMedia": [
{
"base64": false,
"type": "text/html",
"value": "In Meinbergs LTOS versions prior to V7.06.013, the configuration file upload function would not correctly validate the input, which would allow an remote authenticated attacker with high privileges to execute arbitrary commands.<br>"
}
],
"value": "In Meinbergs LTOS versions prior to V7.06.013, the configuration file upload function would not correctly validate the input, which would allow an remote authenticated attacker with high privileges to execute arbitrary commands.\n"
}
],
"metrics": [
{
"cvssV3_1": {
"attackComplexity": "LOW",
"attackVector": "NETWORK",
"availabilityImpact": "HIGH",
"baseScore": 7.2,
"baseSeverity": "HIGH",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"privilegesRequired": "HIGH",
"scope": "UNCHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
"version": "3.1"
},
"format": "CVSS",
"scenarios": [
{
"lang": "en",
"value": "GENERAL"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"cweId": "CWE-434",
"description": "CWE-434 Unrestricted Upload of File with Dangerous Type",
"lang": "en",
"type": "CWE"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2023-05-23T05:49:20.632Z",
"orgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
"shortName": "CERTVDE"
},
"references": [
{
"url": "https://www.meinbergglobal.com/english/news/meinberg-security-advisory-mbgsa-2023-02-lantime-firmware-v7-06-013.htm"
}
],
"source": {
"defect": [
"CERT@VDE#64425"
],
"discovery": "UNKNOWN"
},
"title": "Improper Input Validation in Meinberg LTOS",
"x_generator": {
"engine": "Vulnogram 0.1.0-dev"
}
}
},
"cveMetadata": {
"assignerOrgId": "270ccfa6-a436-4e77-922e-914ec3a9685c",
"assignerShortName": "CERTVDE",
"cveId": "CVE-2023-1731",
"datePublished": "2023-04-24T13:36:03.117Z",
"dateReserved": "2023-03-30T15:06:41.196Z",
"dateUpdated": "2025-02-04T19:16:58.162Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.1"
}