Description
RIFARTEK IOT Wall has a vulnerability of incorrect authorization. An authenticated remote attacker with general user privilege is allowed to perform specific privileged function to access and modify all sensitive data.
No analysis available yet.
Remediation
Vendor Solution
Update IOT Wall version to v30
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-28996 | RIFARTEK IOT Wall has a vulnerability of incorrect authorization. An authenticated remote attacker with general user privilege is allowed to perform specific privileged function to access and modify all sensitive data. |
References
| Link | Providers |
|---|---|
| https://www.twcert.org.tw/tw/cp-132-6962-34ac1-1.html |
|
History
Wed, 19 Feb 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2025-02-19T15:52:52.829Z
Reserved: 2023-02-02T00:00:00.000Z
Link: CVE-2023-25017
Updated: 2024-08-02T11:11:43.437Z
Status : Modified
Published: 2023-03-27T04:15:10.317
Modified: 2024-11-21T07:48:56.457
Link: CVE-2023-25017
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD