← Back

CVE-2023-1383

nvd nist
Published: May 3, 2023Modified: Jun 17, 2026

JSON object

Loading...
4.3
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Exploitability: 2.8 / Impact: 1.4
Source: NVD

Description

An Improper Enforcement of Behavioral Workflow vulnerability in the exchangeDeviceServices function on the amzn.dmgr service allowed an attacker to register services that are only locally accessible. This issue affects: Amazon Fire TV Stick 3rd gen versions prior to 6.2.9.5. Insignia TV with FireOS versions prior to 7.6.3.3.

Affected (2)

Products: Amazon: Fire Os
1 product
Fire Os
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 6.2.9.5
Running on/withPlatform Versions
Amazon
Fire Tv Stick 3rd Gen
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 7.6.3.3
Running on/withPlatform Versions
Bestbuy
Insignia Tv
All versions

Timeline

No history available yet.