CVE-2023-46665

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Oct 26, 2023
Updated: Nov 7, 2023
CWE ID 284

Summary

CVE-2023-46665 is a critical vulnerability affecting Sielco PolyEco1000 devices. An attacker can exploit this issue by manipulating passwords in a POST request during the authentication process. By bypassing the authentication mechanism, an unauthorized user can gain administrative access to the device. This vulnerability poses a significant risk to the security of impacted systems and requires immediate remediation.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share