Логотип exploitDog
bind:CVE-2023-39457
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-39457

Количество 3

Количество 3

nvd логотип

CVE-2023-39457

почти 2 года назад

Triangle MicroWorks SCADA Data Gateway Missing Authentication Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of Triangle MicroWorks SCADA Data Gateway. Authentication is not required to exploit this vulnerability. The specific flaw exists due to the lack of user authentication. The issue results from missing authentication in the default system configuration. An attacker can leverage this vulnerability to execute arbitrary code in the context of root. Was ZDI-CAN-20501.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-6q7m-wp3m-4734

почти 2 года назад

Triangle MicroWorks SCADA Data Gateway Missing Authentication Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of Triangle MicroWorks SCADA Data Gateway. Authentication is not required to exploit this vulnerability. The specific flaw exists due to the lack of user authentication. The issue results from missing authentication in the default system configuration. An attacker can leverage this vulnerability to execute arbitrary code in the context of root. Was ZDI-CAN-20501.

CVSS3: 9.8
EPSS: Низкий
fstec логотип

BDU:2023-04676

больше 2 лет назад

Уязвимость SCADA-системы SCADA Data Gateway (SDG), связанная с недостатками процедуры аутентификации, позволяющая нарушителю обойти ограничения безопасности и получить несанкционированный доступ к системе

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-39457

Triangle MicroWorks SCADA Data Gateway Missing Authentication Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of Triangle MicroWorks SCADA Data Gateway. Authentication is not required to exploit this vulnerability. The specific flaw exists due to the lack of user authentication. The issue results from missing authentication in the default system configuration. An attacker can leverage this vulnerability to execute arbitrary code in the context of root. Was ZDI-CAN-20501.

CVSS3: 9.8
0%
Низкий
почти 2 года назад
github логотип
GHSA-6q7m-wp3m-4734

Triangle MicroWorks SCADA Data Gateway Missing Authentication Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of Triangle MicroWorks SCADA Data Gateway. Authentication is not required to exploit this vulnerability. The specific flaw exists due to the lack of user authentication. The issue results from missing authentication in the default system configuration. An attacker can leverage this vulnerability to execute arbitrary code in the context of root. Was ZDI-CAN-20501.

CVSS3: 9.8
0%
Низкий
почти 2 года назад
fstec логотип
BDU:2023-04676

Уязвимость SCADA-системы SCADA Data Gateway (SDG), связанная с недостатками процедуры аутентификации, позволяющая нарушителю обойти ограничения безопасности и получить несанкционированный доступ к системе

CVSS3: 9.8
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу