CVE-2023-39167

EUVD-2023-42902
In SENEC Storage Box V1,V2 and V3 an unauthenticated remote attacker can obtain the devices' logfiles that contain sensitive data.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CERTVDECNA
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 51%
Affected Products (NVD)
VendorProductVersion
enbwsenec_storage_box_firmware
𝑥
≤ 2023-06-19
enbwsenec_storage_box_firmware
𝑥
≤ 2023-06-19
enbwsenec_storage_box_firmware
𝑥
≤ 2023-06-19
𝑥
= Vulnerable software versions