← Back

CVE-2023-31241

nvd nist
Published: May 22, 2023Modified: Jun 17, 2026

JSON object

Loading...
10.0
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 6.0
Source: NVD

Description

Snap One OvrC cloud servers contain a route an attacker can use to bypass requirements and claim devices outright.

Affected (1)

Products: Snapone: Orvc
1 product
Orvc
Configuration A
1 vulnerable · 12 platform
Vulnerable SoftwareAffected Versions
Before 7.3.0
Running on/withPlatform Versions
Control4
Ca 1
All versions
Control4
Ca 10
All versions
Control4
Ea 1
All versions
Control4
Ea 3
All versions
Control4
Ea 5
All versions
Snapone
An 110 Rt 2l1w
All versions
Snapone
An 110 Rt 2l1w Wifi
All versions
Snapone
An 310 Rt 4l2w
All versions
Snapone
Ovrc 300 Pro
All versions
Snapone
Pakedge Rk 1
All versions
Snapone
Pakedge Rt 3100
All versions
Snapone
Pakedge Wr 1
All versions

References (2)

Source: ics-cert@hq.dhs.gov
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource

Timeline

No history available yet.