Description
Improper Access Control leads to adding a high-privilege user affecting Elenos ETG150 FM transmitter running on version 3.12 by exploiting user's role within the admin profile. An attack could occur over the public Internet in some cases.
Published: 2023-06-23
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-38714 Improper Access Control leads to adding a high-privilege user affecting Elenos ETG150 FM transmitter running on version 3.12 by exploiting user's role within the admin profile. An attack could occur over the public Internet in some cases.
History

Thu, 05 Dec 2024 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 05 Dec 2024 15:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-281

Subscriptions

Elenos Etg150 Etg150 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-12-05T15:07:06.727Z

Reserved: 2023-06-07T00:00:00.000Z

Link: CVE-2023-34672

cve-icon Vulnrichment

Updated: 2024-08-02T16:17:04.170Z

cve-icon NVD

Status : Modified

Published: 2023-06-23T19:15:09.097

Modified: 2024-12-05T15:15:07.333

Link: CVE-2023-34672

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses