CVE-2023-22806
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD
Description
LS ELECTRIC XBC-DN32U with operating system version 01.80 transmits sensitive information in cleartext when communicating over its XGT protocol. This could allow an attacker to gain sensitive information such as user credentials.
Affected (1)
Products: Ls Electric: Xbc Dn32u Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 01.80 |
| Running on/with | Platform Versions |
|---|---|
Ls Electric Xbc Dn32u | All versions |
References (2)
Source: ics-cert@hq.dhs.gov
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource
Timeline
No history available yet.