Vulnerabilities > Selinc > SEL 451 Firmware > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-11-30 CVE-2023-34388 Improper Authentication vulnerability in Selinc Sel-451 Firmware
An Improper Authentication vulnerability in the Schweitzer Engineering Laboratories SEL-451 could allow a remote unauthenticated attacker to potentially perform session hijacking attack and bypass authentication. See product Instruction Manual Appendix A dated 20230830 for more details.
network
low complexity
selinc CWE-287
critical
9.8
2023-11-30 CVE-2023-31176 Insufficient Entropy vulnerability in Selinc Sel-451 Firmware
An Insufficient Entropy vulnerability in the Schweitzer Engineering Laboratories SEL-451 could allow an unauthenticated remote attacker to brute-force session tokens and bypass authentication.  See product Instruction Manual Appendix A dated 20230830 for more details.
network
low complexity
selinc CWE-331
critical
9.8