Security Advisory

CVE-2023-33237

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-08-17 01:50:53
Last updated 2024-10-28 06:01:08
Assigner Moxa
State PUBLISHED

Description

TN-5900 Series firmware version v3.3 and prior is vulnerable to improper-authentication vulnerability. This vulnerability arises from inadequate authentication measures implemented in the web API handler, allowing low-privileged APIs to execute restricted actions that only high-privileged APIs are allowed This presents a potential risk of unauthorized exploitation by malicious actors.