CVE-2023-45228
26.10.2023, 17:15
The application suffers from improper access control when editing users. A user with read permissions can manipulate users, passwords, and permissions by sending a single HTTP POST request with modified parameters.Enginsight
Vendor | Product | Version |
---|---|---|
sielco | analog_fm_transmitter_exc5000gx_firmware | - |
sielco | analog_fm_transmitter_exc120gx_firmware | - |
sielco | analog_fm_transmitter_exc300gx_firmware | - |
sielco | analog_fm_transmitter_exc1600gx_firmware | - |
sielco | analog_fm_transmitter_exc2000gx_firmware | - |
sielco | analog_fm_transmitter_exc1600gx_firmware | - |
sielco | analog_fm_transmitter_exc1000gx_firmware | - |
sielco | analog_fm_transmitter_exc3000gx_firmware | - |
sielco | analog_fm_transmitter_exc5000gx_firmware | - |
sielco | analog_fm_transmitter_exc30gt_firmware | - |
sielco | analog_fm_transmitter_exc300gt_firmware | - |
sielco | analog_fm_transmitter_exc100gt_firmware | - |
sielco | analog_fm_transmitter_exc5000gt_firmware | - |
sielco | analog_fm_transmitter_exc1000gt_firmware | - |
sielco | analog_fm_transmitter_exc120gt_firmware | - |
sielco | radio_link_rtx19_firmware | - |
sielco | radio_link_rtx19_firmware | - |
sielco | radio_link_exc19_firmware | - |
sielco | radio_link_rtx19_firmware | - |
sielco | radio_link_rtx19_firmware | - |
sielco | radio_link_exc19_firmware | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration