Incorrect access control in the outlet control function of web interface in Aten PE6208 2.3.228 and 2.4.232 allows remote authenticated users to control all the outlets as if they were the administrator via HTTP POST requests.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://github.com/setersora/pe6208 |
![]() ![]() |
History
Thu, 13 Feb 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Aten
Aten pe6208 Firmware |
|
CPEs | cpe:2.3:o:aten:pe6208_firmware:2.3.228:*:*:*:*:*:*:* | |
Vendors & Products |
Aten
Aten pe6208 Firmware |
|
Metrics |
ssvc
|
Fri, 23 Aug 2024 18:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-284 | |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-02-13T15:46:52.557Z
Reserved: 2023-09-25T00:00:00.000Z
Link: CVE-2023-43847

Updated: 2024-08-02T19:52:11.842Z

Status : Awaiting Analysis
Published: 2024-05-28T19:15:09.523
Modified: 2024-11-21T08:24:53.243
Link: CVE-2023-43847

No data.