High severity8.8NVD Advisory· Published Oct 21, 2023· Updated Jun 17, 2026
CVE-2023-46055
CVE-2023-46055
Description
An issue in ThingNario Photon v.1.0 allows a remote attacker to execute arbitrary code and escalate privileges via a crafted script to the ping function to the "thingnario Logger Maintenance Webpage" endpoint.
Affected products
3- cpe:2.3:a:thingnario:photon:1.0:*:*:*:*:*:*:*
- ThingNario/Photondescription
- Range: =1.0
Patches
Vulnerability mechanics
References
1- gist.github.com/GroundCTL2MajorTom/eef0d55f5df77cc911d84392acdbf625nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.