CVE-2023-25091 | Milesight UR32L 32.3.0.5 HTTP Request vtysh_ubus handle_interface_acl interface buffer overflow (TALOS-2023-1716)
A vulnerability described as critical has been identified in Milesight UR32L 32.3.0.5. This issue affects the function handle_interface_acl of the file vtysh_ubus of the component HTTP Request Handler. Executing manipulation of the argument interface can lead to buffer overflow.
This vulnerability is tracked as CVE-2023-25091. The attack can be launched remotely. Moreover, an exploit is present.