The affected TBox RTUs are missing authorization for running some API commands. An attacker running these commands could reveal sensitive information such as software versions and web server file contents.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2023-06-29T20:30:13.093Z
Updated: 2024-08-02T16:52:53.640Z
Reserved: 2023-06-23T20:39:08.360Z
Link: CVE-2023-36607
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2023-06-29T21:15:09.917
Modified: 2023-07-07T18:43:19.817
Link: CVE-2023-36607
Redhat
No data.