Vulnerabilities > Ingeteam > Ingepac Da3451 Firmware

DATE CVE VULNERABILITY TITLE RISK
2023-10-02 CVE-2023-3770 Missing Authorization vulnerability in Ingeteam Ingepac Da3451 Firmware 0.29.2.42
 Incorrect validation vulnerability of the data entered, allowing an attacker with access to the network on which the affected device is located to use the discovery port protocol (1925/UDP) to obtain device-specific information without the need for authentication.
network
low complexity
ingeteam CWE-862
4.3
2023-10-02 CVE-2023-3768 Improper Input Validation vulnerability in Ingeteam products
Incorrect data input validation vulnerability, which could allow an attacker with access to the network to implement fuzzing techniques that would allow him to gain knowledge about specially crafted packets that would create a DoS condition through the MMS protocol when initiating communication, achieving a complete system reboot of the device and its services.
network
low complexity
ingeteam CWE-20
7.5