CVE-2023-31174

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Aug 31, 2023
Updated: Sep 5, 2023
CWE ID 352

Summary

CVE-2023-31174 is a Cross-Site Request Forgery (CSRF) vulnerability affecting the Schweitzer Engineering Laboratories SEL-5037 SEL Grid Configurator. This issue allows an attacker to inject malicious instructions that could be executed by an authorized device operator. The impacted versions are before 4.5.0.20, and more details can be found in the Instruction Manual Appendices A and E, dated 20230615.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share