CVE-2023-33217
15.12.2023, 11:15
By abusing a design flaw in the firmware upgrade mechanism of the impacted terminal it's possible to cause a permanent denial of service for the terminal. the only way to recover the terminal is by sending back the terminal to the manufacturerEnginsight
Vendor | Product | Version |
---|---|---|
idemia | sigma_lite_firmware | 𝑥 < 4.15.5 |
idemia | sigma_lite\+_firmware | 𝑥 < 4.15.5 |
idemia | sigma_extreme_firmware | 𝑥 < 4.15.5 |
idemia | sigma_wide_firmware | 𝑥 < 4.15.5 |
idemia | morphowave_compact_firmware | 𝑥 < 2.12.2 |
idemia | morphowave_xp_firmware | 𝑥 < 2.12.2 |
idemia | visionpass_firmware | 𝑥 < 2.12.2 |
idemia | morphowave_sp_firmware | 𝑥 < 1.2.7 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration