CVE-2023-36143

HIGH

Maxprint Maxlink 1200G v3.4.11E - Command Injection

Title source: llm
STIX 2.1

Description

Maxprint Maxlink 1200G v3.4.11E has an OS command injection vulnerability in the "Diagnostic tool" functionality of the device.

Exploits (2)

nomisec WRITEUP
by RobinTrigon · poc
https://github.com/RobinTrigon/CVE-2023-36143
nomisec WORKING POC
by leonardobg · poc
https://github.com/leonardobg/CVE-2023-36143

References (2)

Core 2
Core References
Not Applicable
http://maxlink.com
Exploit, Third Party Advisory
https://github.com/leonardobg/CVE-2023-36143

Scores

CVSS v3 8.8
EPSS 0.1159
EPSS Percentile 93.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact total

Details

CWE
CWE-78
Status published
Products (1)
maxprintisp/maxlink_1200g_firmware 3.4.11e
Published Jun 30, 2023
Tracked Since Feb 18, 2026