CVE-2023-3786
Summary
| CVE | CVE-2023-3786 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-07-20 13:15:00 UTC |
| Updated | 2023-11-07 04:19:00 UTC |
| Description | A vulnerability classified as problematic has been found in Aures Komet up to 20230509. This affects an unknown part of the component Kiosk Mode. The manipulation leads to improper access controls. It is possible to launch the attack on the physical device. The exploit has been disclosed to the public and may be used. The identifier VDB-235053 was assigned to this vulnerability. |
Risk And Classification
Problem Types: NVD-CWE-Other
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Aures | Komet | - | All | All | All |
| Operating System | Aures | Komet Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| CVE-2023-3786: Aures Komet Kiosk Mode access control | MISC | vuldb.com | |
| Full Disclosure: Aures Booking & POS Terminal - Local Privilege Escalation Vulnerability | MISC | seclists.org | |
| www.vulnerability-lab.com/get_content.php | MISC | www.vulnerability-lab.com | |
| Login required | MISC | vuldb.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.