The application suffers from a privilege escalation vulnerability. A
user with read permissions can elevate privileges by sending a HTTP POST
to set a parameter.
Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-46425 | The application suffers from a privilege escalation vulnerability. A user with read permissions can elevate privileges by sending a HTTP POST to set a parameter. |
Solution
No solution given by the vendor.
Workaround
Sielco has not responded to requests to work with CISA to mitigate these vulnerabilities. Users of affected versions of Sielco PolyEco FM Transmitter are invited to contact Sielco customer support https://www.sielco.org/en/contacts for additional information.
Thu, 16 Jan 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-01-16T21:28:02.298Z
Reserved: 2023-10-25T15:23:55.519Z
Link: CVE-2023-41966
Updated: 2024-08-02T19:09:49.582Z
Status : Modified
Published: 2023-10-26T17:15:08.747
Modified: 2024-11-21T08:22:00.493
Link: CVE-2023-41966
No data.
OpenCVE Enrichment
No data.
EUVD