CVE-2023-23774

CVSS 3.1 Score 8.4 of 10 (high)

Details

Published Aug 29, 2023
Updated: Nov 7, 2023
CWE ID 755
CWE ID 703

Summary

CVE-2023-23774 is a vulnerability affecting Motorola's EBTS/MBTS Site Controller. When an unhandled exception occurs, the device drops to a debug prompt on its serial port. An attacker with physical access to the device can trigger such an exception and access secret key material or gain arbitrary code execution on the device. This poses a significant security risk, especially in industrial settings where unauthorized access can have serious consequences.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share