First published: Mon Mar 27 2023(Updated: )
Delta Electronics InfraSuite Device Master versions prior to 1.0.5 contains an improper access control vulnerability in which an attacker can use the Device-Gateway service and bypass authorization, which could result in privilege escalation.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Deltaww Infrasuite Device Master | <1.0.5 | |
Delta Electronics Versions prior to 1.0.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-1144 is a vulnerability in Delta Electronics InfraSuite Device Master versions prior to 1.0.5 that allows an attacker to bypass authorization and potentially escalate privileges.
CVE-2023-1144 has a severity rating of 8.8, indicating a high severity level.
Delta Electronics InfraSuite Device Master versions prior to 1.0.5 are affected by CVE-2023-1144.
An attacker can exploit CVE-2023-1144 by using the Device-Gateway service to bypass authorization.
Updating to version 1.0.5 of Delta Electronics InfraSuite Device Master fixes the CVE-2023-1144 vulnerability.