PT-2023-3866 · Unknown · Roc800-Series Rtu

Published

2023-07-25

·

Updated

2023-08-08

·

CVE-2023-1935

CVSS v2.0

9.7

Critical

VectorAV:N/AC:L/Au:N/C:P/I:C/A:C
Name of the Vulnerable Software and Affected Versions ROC800-Series RTU devices (affected versions not specified)
Description The issue is related to an authentication bypass, which could allow an attacker to gain unauthorized access to data or control of the device and cause a denial-of-service condition. This is due to an original error in the firmware of the controllers. An attacker could exploit this issue to obtain unauthorized access to protected information and cause a denial-of-service condition.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Authentication

Weakness Enumeration

Related Identifiers

BDU:2023-04158
CVE-2023-1935

Affected Products

Roc800-Series Rtu