First published: Mon Jul 10 2023(Updated: )
?Delta Electronics InfraSuite Device Master versions prior to 1.0.7 contain improper access controls that could allow an attacker to alter privilege management configurations, resulting in privilege escalation.
Credit: ics-cert@hq.dhs.gov ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Deltaww Infrasuite Device Master | <1.0.7 | |
Delta Electronics InfraSuite Device Master | <1.0.7 | 1.0.7 |
Delta Electronics has provided a fix to these vulnerabilities. Users are encouraged to update to the latest version. * Delta Electronics InfraSuite Device Master: Update to v1.0.7 https://datacenter-softwarecenter.deltaww.com/Download/UPS/Software/InfraSuite_Device_Master_1.0.7(x64).exe .
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-30765 is a vulnerability in Delta Electronics InfraSuite Device Master versions prior to 1.0.7 that allows an attacker to alter privilege management configurations and escalate privileges.
CVE-2023-30765 has a severity rating of critical.
CVE-2023-30765 affects Delta Electronics InfraSuite Device Master versions prior to 1.0.7 by enabling improper access controls that could be exploited for privilege escalation.
To fix CVE-2023-30765, it is recommended to update to version 1.0.7 or newer of Delta Electronics InfraSuite Device Master.
You can find more information about CVE-2023-30765 at the following link: [https://www.cisa.gov/news-events/ics-advisories/icsa-23-180-01](https://www.cisa.gov/news-events/ics-advisories/icsa-23-180-01).