CVE-2023-22300
—CVSS 3.1
6.1 medium
EPSS
<1%p42
Published
()
Modified
Description
An unauthenticated remote attacker could force all authenticated users, such as administrative users, to perform unauthorized actions by viewing the logs. This action would also grant the attacker privilege escalation.
- Vendors
- sauter-controls
- Products
- ey-as525f001 firmware
- Weakness
- CWE-79
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
In the news0 stories
No ingested article mentions this CVE yet.