The affected TBox RTUs allow low privilege users to access software security tokens of higher privilege. This could allow an attacker with “user” privileges to access files requiring higher privileges by establishing an SSH session and providing the other tokens.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2023-07-03T20:03:07.721Z
Updated: 2024-08-02T16:52:54.051Z
Reserved: 2023-06-23T20:39:08.361Z
Link: CVE-2023-36611
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2023-07-03T21:15:10.037
Modified: 2023-07-07T21:40:07.380
Link: CVE-2023-36611
Redhat
No data.