CVE-2023-46662
26.10.2023, 20:15
Sielco PolyEco1000 is vulnerable to an information disclosure vulnerability due to improper access control enforcement. An unauthenticated remote attacker can exploit this via a specially crafted request to gain access to sensitive information.Enginsight
| Vendor | Product | Version |
|---|---|---|
| sielco | polyeco500_firmware | 1.7.0 |
| sielco | polyeco500_firmware | 10.16 |
| sielco | polyeco300_firmware | 2.0.0 |
| sielco | polyeco300_firmware | 2.0.2 |
| sielco | polyeco300_firmware | 10.19 |
| sielco | polyeco1000_firmware | 1.9.3 |
| sielco | polyeco1000_firmware | 1.9.4 |
| sielco | polyeco1000_firmware | 2.0.6 |
| sielco | polyeco1000_firmware | 10.19 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration