8.8

CVE-2023-35794

Exploit
An issue was discovered in Cassia Access Controller 2.1.1.2303271039. The Web SSH terminal endpoint (spawned console) can be accessed without authentication. Specifically, there is no session cookie validation on the Access Controller; instead, there is only Basic Authentication to the SSH console.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
CassianetworksAccess Controller Version2.1.1.2303271039
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.94% 0.563
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 8.8 2.8 5.9
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE-287 Improper Authentication

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

https://www.cassianetworks.com/products/iot-access-controller/
Product
https://blog.kscsc.online/cves/202335794/md.html
https://github.com/Dodge-MPTC/CVE-2023-35794-WebSSH-Hijacking
Third Party Advisory
Exploit