CVE-2023-25369

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Jun 14, 2023
Updated: Jun 28, 2023

Summary

CVE-2023-25369 is a newly identified vulnerability affecting the Siglent SDS 1104X-E and SDS1xx4X-E_V6.1.37R9.ADS devices. This issue allows an attacker to trigger a Denial of Service (DoS) on the user interface by sending malformed SCPI (Standard Commands for Programmable Instruments) commands. Successful exploitation of this vulnerability results in the device becoming unresponsive, rendering it unusable for legitimate users until the device is restarted. This poses a significant risk to laboratories and testing facilities that rely on these devices for critical operations. Users are advised to apply the pending patch or upgrade to a vulnerable-free version to mitigate the risk of attack.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share