Vulnerability Details CVE-2023-25183
In Snap One OvrC Pro versions prior to 7.2, when logged into the superuser account, a new functionality appears that could allow users to execute arbitrary commands on the hub device.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 7.4%
CVSS Severity
CVSS v3 Score 8.3
Products affected by CVE-2023-25183
-
-
cpe:2.3:a:snapone:orvc:6.2.0.5
-
cpe:2.3:a:snapone:orvc:6.2.1.7
-
cpe:2.3:a:snapone:orvc:6.3.0.4
-
cpe:2.3:a:snapone:orvc:6.3.0.6
-
cpe:2.3:a:snapone:orvc:6.4.0.3
-
cpe:2.3:a:snapone:orvc:6.4.0.9
-
cpe:2.3:a:snapone:orvc:7.0
-
cpe:2.3:a:snapone:orvc:7.1.0
-
cpe:2.3:a:snapone:orvc:7.2.0
-
cpe:2.3:a:snapone:orvc:7.2.0.5
-
cpe:2.3:a:snapone:orvc:7.2.0.6
-
cpe:2.3:h:snapone:ovrc-300-pro:-