CVE-2023-25914
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD
Description
Due to improper restriction, authenticated attackers could retrieve and read system files of the underlying server through the XML interface. The information that can be read can lead to a full system compromise.
Affected (1)
Products: Danfoss: Ak Sm 800a Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 3.3 |
| Running on/with | Platform Versions |
|---|---|
Danfoss Ak Sm 800a | All versions |
References (4)
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Timeline
No history available yet.