CVE-2023-39167

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Dec 7, 2023
Updated: Dec 14, 2023
CWE ID 862

Summary

CVE-2023-39167 is a vulnerability affecting SENEC Storage Box versions 1, 2, and 3. An unauthenticated attacker can exploit this issue to gain access to the devices' logfiles, which contain sensitive data. This represents a risk as the logs may include user credentials, IP addresses, and other confidential information, potentially leading to data breaches or unauthorized access to the affected systems. The vulnerability can be exploited remotely, making it a significant concern for network security. Organizations using these SENEC Storage Box models are advised to apply the necessary patches or updates as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share