THREATINT

We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Fathom (Privacy friendly web analytics)
Zendesk (Helpdesk and Chat)

Ok

Home | EN
Support
CVE
PUBLISHED

CVE-2023-44374

Assignersiemens
Reserved2023-09-28
Published2023-11-14
Updated2024-06-11

Description

Affected devices allow to change the password, but insufficiently check which password is to be changed. With this an authenticated attacker could, under certain conditions, be able to change the password of another, potential admin user allowing her to escalate her privileges.



MEDIUM: 6.5CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N/E:P/RL:O/RC:C

Problem types

CWE-567: Unsynchronized Access to Shared Data in a Multithreaded Context

Product status

Default status
unknown

Any version before V8.0
affected

Default status
unknown

Any version before V8.0
affected

Default status
unknown

Any version before V8.0
affected

Default status
unknown

Any version before V8.0
affected

Default status
unknown

Any version before V8.0
affected

Default status
unknown

Any version before V8.0
affected

Default status
unknown

Any version before V8.0
affected

Default status
unknown

Any version before V8.0
affected

Default status
unknown

Any version before V8.0
affected

Default status
unknown

Any version before V8.0
affected

Default status
unknown

Any version before V8.0
affected

Default status
unknown

Any version before V8.0
affected

Default status
unknown

Any version before V8.0
affected

Default status
unknown

Any version before V8.0
affected

Default status
unknown

Any version before V8.0
affected

Default status
unknown

Any version before V8.0
affected

Default status
unknown

Any version before V8.0
affected

Default status
unknown

Any version before V8.0
affected

Default status
unknown

Any version before V8.0
affected

Default status
unknown

Any version before V8.0
affected

Default status
unknown

Any version before *
affected

Default status
unknown

Any version before *
affected

Default status
unknown

Any version before *
affected

Default status
unknown

Any version before *
affected

Default status
unknown

Any version before *
affected

Default status
unknown

Any version before *
affected

Default status
unknown

Any version before *
affected

Default status
unknown

Any version before *
affected

Default status
unknown

Any version before *
affected

Default status
unknown

Any version before *
affected

Default status
unknown

Any version before *
affected

Default status
unknown

Any version before *
affected

Default status
unknown

Any version before *
affected

Default status
unknown

Any version before *
affected

Default status
unknown

Any version before *
affected

Default status
unknown

Any version before *
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

Default status
unknown

Any version before V4.5
affected

References

https://cert-portal.siemens.com/productcert/pdf/ssa-699386.pdf

https://cert-portal.siemens.com/productcert/pdf/ssa-180704.pdf

https://cert-portal.siemens.com/productcert/html/ssa-699386.html

https://cert-portal.siemens.com/productcert/html/ssa-180704.html

https://cert-portal.siemens.com/productcert/html/ssa-690517.html

cve.org CVE-2023-44374

nvd.nist.gov CVE-2023-44374

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2023-44374
© Copyright 2024 THREATINT. Made in Cyprus with +