CVE-2023-41918 is a critical vulnerability (CVSS 10.0) allowing unauthenticated attackers to execute commands due to inadequate Access Control List (ACL) constraints, potentially leading to unauthorized data manipulation, privileged function access, or arbitrary code execution. The attack requires no user interaction and can be launched over the network. While there is no known active exploitation or public exploit code (Metasploit, Nuclei, ExploitDB), the vulnerability is being discussed in the community, with 10 mentions, primarily on GitHub.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Kiloview | P1/P2 | >= All, <= 4.8.2605CNA affecteddefault affected |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.