A CWE-494 Download of Code Without Integrity Check...
High severity
Unreviewed
Published
Nov 15, 2023
to the GitHub Advisory Database
•
Updated Nov 15, 2023
Description
Published by the National Vulnerability Database
Nov 15, 2023
Published to the GitHub Advisory Database
Nov 15, 2023
Last updated
Nov 15, 2023
A CWE-494 Download of Code Without Integrity Check vulnerability exists that could allow
modified firmware to be uploaded when an authorized admin user begins a firmware update
procedure.
References