CVE-2023-25094 | Milesight UR32L 32.3.0.5 HTTP Request vtysh_ubus into_class_node old_class_name buffer overflow (TALOS-2023-1716)
A vulnerability, which was classified as critical, was found in Milesight UR32L 32.3.0.5. This affects the function into_class_node of the file vtysh_ubus of the component HTTP Request Handler. Such manipulation of the argument old_class_name leads to buffer overflow.
This vulnerability is documented as CVE-2023-25094. The attack can be executed remotely. Additionally, an exploit exists.