Delta Electronics InfraSuite Device Master versions prior to 1.0.5 contain a vulnerability in which the Device-status service listens on port 10100/ UDP by default. The service accepts the unverified UDP packets and deserializes the content, which could allow an unauthenticated attacker to remotely execute arbitrary code.
History

Thu, 16 Jan 2025 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2025-02-13T16:39:15.943Z

Reserved: 2023-03-01T23:15:47.425Z

Link: CVE-2023-1133

cve-icon Vulnrichment

Updated: 2024-08-02T05:32:46.496Z

cve-icon NVD

Status : Modified

Published: 2023-03-27T15:15:07.293

Modified: 2024-11-21T07:38:31.250

Link: CVE-2023-1133

cve-icon Redhat

No data.