Vulnerabilities > CVE-2023-1144 - Incorrect Authorization vulnerability in Deltaww Infrasuite Device Master 00.00.01A/00.00.02A
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
Delta Electronics InfraSuite Device Master versions prior to 1.0.5 contains an improper access control vulnerability in which an attacker can use the Device-Gateway service and bypass authorization, which could result in privilege escalation.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 3 |