When user authentication is not... CVE-2023-40151

- AV AC AU C I A
发布: 2023-11-21
修订: 2023-11-29

When user authentication is not enabled the shell can execute commands with the highest privileges. Red Lion SixTRAK and VersaTRAK Series RTUs with authenticated users enabled (UDR-A) any Sixnet UDR message will meet an authentication challenge over UDP/IP. When the same message comes over TCP/IP the RTU will simply accept the message with no authentication challenge.

0%
暂无可用Exp或PoC
当前有12条受影响产品信息