PT-2023-18191 · Unknown · Semchameleonhelper

Published

2023-02-09

·

Updated

2023-02-21

·

CVE-2023-21424

CVSS v3.1

5.1

Medium

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions SemChameleonHelper versions prior to SMR Jan-2023 Release 1
Description The issue is related to improper handling of insufficient permissions or privileges, allowing an attacker to modify network-related values, network code, carrier ID, and operator brand.
Recommendations For versions prior to SMR Jan-2023 Release 1, update to SMR Jan-2023 Release 1 or later to resolve the issue.

Fix

Incorrect Authorization

Improper Authorization

Weakness Enumeration

Related Identifiers

CVE-2023-21424

Affected Products

Semchameleonhelper