A CWE-862: Missing Authorization vulnerability exists that could allow viewing of unauthorized content, changes or deleting of content, or performing unauthorized functions when tampering the Device File Transfer settings on DCE endpoints. Affected products: StruxureWare Data Center Expert (V7.9.2 and prior)
History

Tue, 04 Mar 2025 03:45:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: schneider

Published: 2023-04-18T20:33:50.548Z

Updated: 2025-03-03T19:16:53.079Z

Reserved: 2023-02-07T17:00:03.778Z

Link: CVE-2023-25552

cve-icon Vulnrichment

Updated: 2024-08-02T11:25:19.289Z

cve-icon NVD

Status : Modified

Published: 2023-04-18T21:15:08.713

Modified: 2024-11-21T07:49:42.960

Link: CVE-2023-25552

cve-icon Redhat

No data.