Walchem Intuition 9 firmware versions prior to v4.21 are missing authentication for some of the API routes of the management web server. This could allow an attacker to download and export sensitive data.
Metrics
Affected Vendors & Products
References
History
Thu, 03 Oct 2024 14:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2023-08-23T21:21:07.642Z
Updated: 2024-10-03T13:40:49.576Z
Reserved: 2023-07-18T21:44:31.730Z
Link: CVE-2023-38422
Vulnrichment
Updated: 2024-08-02T17:39:13.410Z
NVD
Status : Modified
Published: 2023-08-23T22:15:08.693
Modified: 2024-11-21T08:13:32.113
Link: CVE-2023-38422
Redhat
No data.