Vulnerability Details CVE-2023-43848
Incorrect access control in the firewall management function of web interface in Aten PE6208 2.3.228 and 2.4.232 allows remote authenticated users to alter local firewall settings of the device as if they were the administrator via HTTP POST request.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.015
EPSS Ranking 80.9%
CVSS Severity
CVSS v3 Score 8.0
Products affected by CVE-2023-43848
-
-
cpe:2.3:o:aten:pe6208_firmware:2.3.228
-
cpe:2.3:o:aten:pe6208_firmware:2.4.231
-
cpe:2.3:o:aten:pe6208_firmware:2.4.232