CVE-2023-43121: Extremenetworks Exos

High severity, CVSS 7.5. EPSS: 1.2% chance of exploitation in the next 30 days.

A Directory Traversal vulnerability discovered in Chalet application in Extreme Networks Switch Engine (EXOS) before 32.5.1.5, before 22.7, and before 31.7.2 allows attackers to read arbitrary files.

Affected products

  • Extremenetworks Exos: before 22.7 (fixed in 22.7); from 31.7.0, before 31.7.2 (fixed in 31.7.2); from 32.0, before 32.5.1.5 (fixed in 32.5.1.5)

Published 2023-10-16. Last modified 2026-06-17.