A settings manipulation vulnerability in NCR Terminal Handler v1.5.1 allows attackers to execute arbitrary commands, including editing system security auditing configurations.
Advisories
Source ID Title
EUVD EUVD EUVD-2023-51424 A settings manipulation vulnerability in NCR Terminal Handler v1.5.1 allows attackers to execute arbitrary commands, including editing system security auditing configurations.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Thu, 26 Jun 2025 13:15:00 +0000

Type Values Removed Values Added
First Time appeared Ncr
Ncr terminal Handler
CPEs cpe:2.3:a:ncr:terminal_handler:1.5.1:*:*:*:*:*:*:*
Vendors & Products Ncr
Ncr terminal Handler

Tue, 24 Jun 2025 18:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-284
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Mon, 23 Jun 2025 15:00:00 +0000

Type Values Removed Values Added
Description A settings manipulation vulnerability in NCR Terminal Handler v1.5.1 allows attackers to execute arbitrary commands, including editing system security auditing configurations.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-06-24T17:40:47.591Z

Reserved: 2023-11-06T00:00:00.000Z

Link: CVE-2023-47297

cve-icon Vulnrichment

Updated: 2025-06-24T13:48:12.930Z

cve-icon NVD

Status : Analyzed

Published: 2025-06-23T15:15:25.940

Modified: 2025-06-26T12:46:49.080

Link: CVE-2023-47297

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-06-27T09:26:49Z