First published: Mon Aug 21 2023(Updated: )
Because of an authentication flaw an attacker would be capable of generating a web report that discloses sensitive information such as internal IP addresses, usernames, store names and other sensitive information.
Credit: csirt@divd.nl
Affected Software | Affected Version | How to fix |
---|---|---|
Danfoss AK-SM 800A Firmware | <=3.3 | |
Danfoss AK-SM 800A Firmware | ||
All of | ||
Danfoss AK-SM 800A Firmware | <=3.3 | |
Danfoss AK-SM 800A Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-25913 is a vulnerability caused by an authentication flaw that allows an attacker to generate a web report, disclosing sensitive information.
CVE-2023-25913 has a severity rating of 7.5 (high).
The Danfoss Ak-sm 800a Firmware up to version 3.3 is affected by CVE-2023-25913.
CVE-2023-25913 allows an attacker to generate a web report revealing sensitive information such as internal IP addresses, usernames, and store names.
Yes, it is recommended to update to a fixed version of the Danfoss Ak-sm 800a Firmware to mitigate CVE-2023-25913.