CVE-2023-43847
PoC —CVSS 3.1
5.3 medium
EPSS
<1%p45
Published
()
Modified
Description
Incorrect access control in the outlet control function of web interface in Aten PE6208 2.3.228 and 2.4.232 allows remote authenticated users to control all the outlets as if they were the administrator via HTTP POST requests.
- Vendors
- aten
- Products
- pe6208 firmware
- Weakness
- CWE-284
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
In the news0 stories
No ingested article mentions this CVE yet.