CVE-2023-36607
CVSS V2 None
CVSS V3 None
Description
The affected TBox RTUs are missing authorization for running some API commands. An attacker running these commands could reveal sensitive information such as software versions and web server file contents.
Overview
- CVE ID
- CVE-2023-36607
- Assigner
- icscert
- Vulnerability Status
- PUBLISHED
- Published Version
- 2023-06-29T20:30:13.093Z
- Last Modified Date
- 2023-06-29T20:30:13.093Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://www.cisa.gov/news-events/ics-advisories/icsa-23-180-03 | government-resource |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2023-36607 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-36607 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-06-25 16:26:34 | Added to TrackCVE |