CVE-2023-34671
Summary
| CVE | CVE-2023-34671 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-06-23 18:15:00 UTC |
| Updated | 2023-07-05 15:42:00 UTC |
| Description | Improper Access Control leads to privilege escalation affecting Elenos ETG150 FM transmitter running on version 3.12 by exploiting user's role in the user profile. An attack could occur over the public Internet in some cases. |
Risk And Classification
Problem Types: NVD-CWE-Other
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Elenos | Etg150 Fm | - | All | All | All |
| Operating System | Elenos | Etg150 Fm Firmware | 3.12 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Elenos - World Broadcast Experience | MISC | elenos.com | |
| CVE-2023-34671 - Strik3r Blog | MISC | strik3r.gitbook.io | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.