← Back

CVE-2023-28865

nvd nist
Published: Aug 8, 2024Modified: Jun 17, 2026

JSON object

Loading...
6.6
Vector
CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 0.7 / Impact: 5.9
Source: NVD

Description

Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR15, 4.0.0 SR05, 4.1.0 SR03, and 4.2.0 SR02 fails to validate the directory contents of certain directories (e.g., ensuring the expected hash sum) during the Pre-Boot Authorization (PBA) process. This can be exploited by a physical attacker who is able to manipulate the contents of the system's hard disk.

Affected (4)

Vynamic Security Suite
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Dieboldnixdorf
Before 3.3.0sr15
From 4.0.0 to 4.0.0sr05
From 4.1.0 to 4.1.0sr03
From 4.2.0 to 4.2.0sr02

Timeline

No history available yet.