CVE-2023-25582 | Milesight UR32L 32.3.0.5 Network Request vlan_name os command injection (TALOS-2023-1723)
A vulnerability marked as critical has been reported in Milesight UR32L 32.3.0.5. The affected element is the function vlan_name of the component Network Request Handler. The manipulation leads to os command injection.
This vulnerability is referenced as CVE-2023-25582. The attack needs to be initiated within the local network. Furthermore, an exploit is available.