"Experts Warn of Severe Flaws Affecting Milesight Routers and Titan SFTP Servers"
"Experts Warn of Severe Flaws Affecting Milesight Routers and Titan SFTP Servers"
Milesight's industrial cellular routers may have been actively exploited in real-world attacks, according to new research from VulnCheck. The exploited vulnerability, tracked as CVE-2023-43261, has been described as a case of information disclosure that affects UR5X, UR32L, UR32, UR35, and UR41 routers before version 35.3.0.7. Remote and unauthenticated attackers could gain unauthorized access to the web interface, enabling them to configure Virtual Private Network (VPN) servers and disable firewall protections.