← Back

CVE-2023-37755

nvd nist
Published: Sep 14, 2023Modified: Jun 17, 2026

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

i-doit pro 25 and below and I-doit open 25 and below are configured with insecure default administrator credentials, and there is no warning or prompt to ask users to change the default password and account name. Unauthenticated attackers can exploit this vulnerability to obtain Administrator privileges, resulting in them being able to perform arbitrary system operations or cause a Denial of Service (DoS).

Affected (2)

Products: I Doit: I Doit
1 product
I Doit
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
I Doit
Up to 25
Up to 25

Timeline

No history available yet.