CVE-2023-42425

An issue in Turing Video Turing Edge+ EVC5FD v.1.38.6 allows remote attacker to execute arbitrary code and obtain sensitive information via the cloud connection components.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:turing:edge\+_evc5fd_firmware:1.38.6:*:*:*:*:*:*:*
cpe:2.3:h:turing:edge\+_evc5fd:-:*:*:*:*:*:*:*

History

09 Nov 2023, 00:06

Type Values Removed Values Added
References (MISC) http://turing.com - (MISC) http://turing.com - Product
References (MISC) https://gist.github.com/stevenliuturing/306bb689737cec5d3a5760c34d65932c - (MISC) https://gist.github.com/stevenliuturing/306bb689737cec5d3a5760c34d65932c - Third Party Advisory
CPE cpe:2.3:o:turing:edge\+_evc5fd_firmware:1.38.6:*:*:*:*:*:*:*
cpe:2.3:h:turing:edge\+_evc5fd:-:*:*:*:*:*:*:*
First Time Turing edge\+ Evc5fd Firmware
Turing edge\+ Evc5fd
Turing
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CWE CWE-295

31 Oct 2023, 15:35

Type Values Removed Values Added
New CVE

Information

Published : 2023-10-31 15:15

Updated : 2023-12-10 15:14


NVD link : CVE-2023-42425

Mitre link : CVE-2023-42425

CVE.ORG link : CVE-2023-42425


JSON object : View

Products Affected

turing

  • edge\+_evc5fd_firmware
  • edge\+_evc5fd
CWE
CWE-295

Improper Certificate Validation