CVE-2023-3261

The Dataprobe iBoot PDU running firmware version 1.43.03312023 or earlier contains a buffer overflow vulnerability in the librta.so.0.0.0 library.Successful exploitation could cause denial of service or unexpected behavior with respect to all interactions relying on the targeted vulnerable binary, including the ability to log in via the web server.
OS Command Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
trellixCNA
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVEADP
---
---
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 40%
VendorProductVersion
cyberpowerpowerpanel_server
𝑥
< 2.6.9
dataprobeiboot-pdu4a-c10_firmware
𝑥
< 1.44.0804202
dataprobeiboot-pdu4a-c20_firmware
𝑥
< 1.44.0804202
dataprobeiboot-pdu4a-n15_firmware
𝑥
< 1.44.0804202
dataprobeiboot-pdu4a-n20_firmware
𝑥
< 1.44.0804202
dataprobeiboot-pdu4-c20_firmware
𝑥
< 1.44.0804202
dataprobeiboot-pdu4-n20_firmware
𝑥
< 1.44.0804202
dataprobeiboot-pdu4sa-c10_firmware
𝑥
< 1.44.0804202
dataprobeiboot-pdu4sa-c20_firmware
𝑥
< 1.44.0804202
dataprobeiboot-pdu4sa-n15_firmware
𝑥
< 1.44.0804202
dataprobeiboot-pdu4sa-n20_firmware
𝑥
< 1.44.0804202
dataprobeiboot-pdu8a-2c10_firmware
𝑥
< 1.44.0804202
dataprobeiboot-pdu8a-2c20_firmware
𝑥
< 1.44.0804202
dataprobeiboot-pdu8a-2n15_firmware
𝑥
< 1.44.0804202
dataprobeiboot-pdu8a-2n20_firmware
𝑥
< 1.44.0804202
dataprobeiboot-pdu8a-c10_firmware
𝑥
< 1.44.0804202
dataprobeiboot-pdu8a-c20_firmware
𝑥
< 1.44.0804202
dataprobeiboot-pdu8a-n15_firmware
𝑥
< 1.44.0804202
dataprobeiboot-pdu8a-n20_firmware
𝑥
< 1.44.0804202
dataprobeiboot-pdu8sa-2n15_firmware
𝑥
< 1.44.0804202
dataprobeiboot-pdu8sa-c10_firmware
𝑥
< 1.44.0804202
dataprobeiboot-pdu8sa-n15_firmware
𝑥
< 1.44.0804202
dataprobeiboot-pdu8sa-n20_firmware
𝑥
< 1.44.0804202
𝑥
= Vulnerable software versions