← back
CVE-2023-5326

SATO CL4NX-J Plus WebConfig improper authentication

CVSS 6.3 MEDIUMEPSS 0.5%CWE-287
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 6.3EPSS 0.5%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
01 Oct 2023Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A vulnerability was found in SATO CL4NX-J Plus 1.13.2-u455_r2. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component WebConfig. The manipulation leads to improper authentication. The attack needs to be done within the local network. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-241027.
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Affected products
SATO · CL4NX-J Plus

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →