CVE-2023-47031: Critical severity NCR Terminal Handler vulnerability
Published Jun 23, 2025
·Updated
An issue in NCR Terminal Handler v.1.5.1 allows a remote attacker to escalate privileges via a crafted POST request to the grantRolesToUsers, grantRolesToGroups, and grantRolesToOrganization SOAP API component.
Affected Software
2 affected components
NCR Terminal Handler
NCR Terminal Handler=1.5.1
Event History
Jun 23, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-47031?
CVE-2023-47031 has been classified as a high severity vulnerability due to potential privilege escalation.
2
How do I fix CVE-2023-47031?
To fix CVE-2023-47031, update the NCR Terminal Handler to the latest version that addresses this vulnerability.
3
What components are affected by CVE-2023-47031?
CVE-2023-47031 affects the grantRolesToUsers, grantRolesToGroups, and grantRolesToOrganization components of the NCR Terminal Handler.
4
What type of attack does CVE-2023-47031 enable?
CVE-2023-47031 enables remote attackers to escalate privileges through crafted POST requests.
5
Which version of NCR Terminal Handler is vulnerable to CVE-2023-47031?
NCR Terminal Handler version 1.5.1 is vulnerable to CVE-2023-47031.