CVE-2023-25913: Authentication Bypass in Danfoss AK-SM800A
Because of an authentication flaw an attacker would be capable of generating a web report that discloses sensitive information such as internal IP addresses, usernames, store names and other sensitive information.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-25913?
CVE-2023-25913 is a vulnerability caused by an authentication flaw that allows an attacker to generate a web report, disclosing sensitive information.
What is the severity of CVE-2023-25913?
CVE-2023-25913 has a severity rating of 7.5 (high).
What software is affected by CVE-2023-25913?
The Danfoss Ak-sm 800a Firmware up to version 3.3 is affected by CVE-2023-25913.
How does CVE-2023-25913 impact the system?
CVE-2023-25913 allows an attacker to generate a web report revealing sensitive information such as internal IP addresses, usernames, and store names.
Is there a fix available for CVE-2023-25913?
Yes, it is recommended to update to a fixed version of the Danfoss Ak-sm 800a Firmware to mitigate CVE-2023-25913.