Description
An unauthenticated user could log into iSTAR Ultra, iSTAR Ultra LT, iSTAR Ultra G2, and iSTAR Edge G2 with administrator rights.
Published: 2023-07-11
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

Vendor Solution

Upgrade iSTAR Ultra, iSTAR Ultra LT, iSTAR Ultra G2, and iSTAR Edge G2 firmware to version 6.9.2 CU01.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-43813 An unauthenticated user could log into iSTAR Ultra, iSTAR Ultra LT, iSTAR Ultra G2, and iSTAR Edge G2 with administrator rights.
History

Tue, 22 Oct 2024 21:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Subscriptions

Johnsoncontrols Edge G2 Edge G2 Firmware Istar Ultra Istar Ultra Firmware Istar Ultra G2 Istar Ultra G2 Firmware Istar Ultra Lt Istar Ultra Lt Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: jci

Published:

Updated: 2024-10-22T20:31:09.969Z

Reserved: 2023-06-06T14:51:53.713Z

Link: CVE-2023-3127

cve-icon Vulnrichment

Updated: 2024-08-02T06:48:07.288Z

cve-icon NVD

Status : Modified

Published: 2023-07-11T22:15:09.907

Modified: 2024-11-21T08:16:31.063

Link: CVE-2023-3127

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses