CVE-2023-53967 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Screen SFT DAB 600/C firmware 1.9.3 contains an authentication bypass vulnerability that allows attackers to change the admin password without requiring the cur…
Critical CVSS: 9.3

CVE-2023-53967

Screen SFT DAB 600/C firmware 1.9.3 contains an authentication bypass vulnerability that allows attackers to change the admin password without requiring the current credentials. Attackers can exploit the userManager.cgx API endpoint by sending a crafted POST request with a new MD5-hashed password to directly modify the admin account's authentication.
Vendor
Dbbroadcast
Product
Sft Dab 600\/c Firmware
CWE
CWE-306
Yayın Tarihi
2025-12-22 22:16:01
Güncelleme
2025-12-26 16:50:44
Source Identifier
disclosure@vulncheck.com
KEV Date Added
-

Kategoriler

Referanslar