CVE-2023-33684

Weak session management in DB Elettronica Telecomunicazioni SpA SFT DAB 600/C Firmware: 1.9.3 Bios firmware: 7.1 (Apr 19 2021) Gui: 2.46 FPGA: 169.55 uc: 6.15 allows attackers on the same network to bypass authentication by re-using the IP address assigned to the device by the NAT protocol.
References
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:dbbroadcast:sft_dab_600\/c_bios:7.1:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:sft_dab_600\/c_firmware:1.9.3:*:*:*:*:*:*:*
cpe:2.3:h:dbbroadcast:sft_dab_600\/c:-:*:*:*:*:*:*:*

History

16 Feb 2024, 20:34

Type Values Removed Values Added
First Time Dbbroadcast sft Dab 600\/c Firmware
Dbbroadcast sft Dab 600\/c Bios
Dbbroadcast sft Dab 600\/c
CPE cpe:2.3:a:dbbroadcast:spa_sft_dab_600\/c_bios:7.1:*:*:*:*:*:*:*
cpe:2.3:h:dbbroadcast:spa_sft_dab_600\/c:-:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:spa_sft_dab_600\/c_firmware:1.9.3:*:*:*:*:*:*:*
cpe:2.3:h:dbbroadcast:sft_dab_600\/c:-:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:sft_dab_600\/c_bios:7.1:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:sft_dab_600\/c_firmware:1.9.3:*:*:*:*:*:*:*

16 Jun 2023, 16:28

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.7
First Time Dbbroadcast spa Sft Dab 600\/c Firmware
Dbbroadcast spa Sft Dab 600\/c
Dbbroadcast spa Sft Dab 600\/c Bios
Dbbroadcast
References (MISC) https://www.zeroscience.mk/en/vulnerabilities/ZSL-2023-5771.php - (MISC) https://www.zeroscience.mk/en/vulnerabilities/ZSL-2023-5771.php - Third Party Advisory
CPE cpe:2.3:a:dbbroadcast:spa_sft_dab_600\/c_bios:7.1:*:*:*:*:*:*:*
cpe:2.3:o:dbbroadcast:spa_sft_dab_600\/c_firmware:1.9.3:*:*:*:*:*:*:*
cpe:2.3:h:dbbroadcast:spa_sft_dab_600\/c:-:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo

06 Jun 2023, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-06-06 20:15

Updated : 2024-02-28 20:13


NVD link : CVE-2023-33684

Mitre link : CVE-2023-33684

CVE.ORG link : CVE-2023-33684


JSON object : View

Products Affected

dbbroadcast

  • sft_dab_600\/c_bios
  • sft_dab_600\/c_firmware
  • sft_dab_600\/c