ZeroHour

CVE-2023-43847

PoC
CVSS 3.1
5.3 medium
EPSS
<1%p45
Published
()
Modified
Description

Incorrect access control in the outlet control function of web interface in Aten PE6208 2.3.228 and 2.4.232 allows remote authenticated users to control all the outlets as if they were the administrator via HTTP POST requests.

Vendors
aten
Products
pe6208 firmware
Weakness
CWE-284
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

In the news

No ingested article mentions this CVE yet.