CVE-2023-31173

Use of Hard-coded Credentials vulnerability in Schweitzer Engineering Laboratories SEL-5037 SEL Grid Configurator on Windows allows Authentication Bypass. See Instruction Manual Appendix A and Appendix E dated 20230615 for more details. This issue affects SEL-5037 SEL Grid Configurator: before 4.5.0.20.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:selinc:sel-5037_sel_grid_configurator:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

06 Sep 2023, 00:16

Type Values Removed Values Added
CWE CWE-798
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.4
First Time Microsoft
Selinc sel-5037 Sel Grid Configurator
Microsoft windows
Selinc
References (MISC) https://www.nozominetworks.com/blog/ - (MISC) https://www.nozominetworks.com/blog/ - Not Applicable
References (MISC) https://selinc.com/support/security-notifications/external-reports/ - (MISC) https://selinc.com/support/security-notifications/external-reports/ - Vendor Advisory
CPE cpe:2.3:a:selinc:sel-5037_sel_grid_configurator:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

31 Aug 2023, 17:25

Type Values Removed Values Added
New CVE

Information

Published : 2023-08-31 16:15

Updated : 2024-02-28 20:33


NVD link : CVE-2023-31173

Mitre link : CVE-2023-31173

CVE.ORG link : CVE-2023-31173


JSON object : View

Products Affected

microsoft

  • windows

selinc

  • sel-5037_sel_grid_configurator
CWE
CWE-798

Use of Hard-coded Credentials