Back to overview

CVE-2023-40151

CRITICAL
10.0
CVSS 3.1
Description
When user authentication is not enabled the shell can execute commands with the highest privileges. Red Lion SixTRAK and VersaTRAK Series RTUs with authenticated users enabled (UDR-A) any Sixnet UDR message will meet an authentication challenge over UDP/IP. When the same message comes over TCP/IP the RTU will simply accept the message with no authentication challenge.

Metadata

CVE ID
CVE-2023-40151
State
PUBLISHED
Assigner
icscert
Reserved
2023-09-18 22:41 UTC
Published
2023-11-21 00:11 UTC
Last updated
2026-02-25 17:20 UTC
Primary CWE
CWE-749
CWE-749 Exposed Dangerous Method Or Function
Vendor / Product
Red Lion Controls / ST-IPm-8460
Sources
cve.org  ·  NVD

Severity & Metrics

10.0 CRITICAL CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
SSVC — CISA Coordinator
Exploitation
none
Automatable
yes
Tech. Impact
total
Affected products (6)
VendorProductPlatformVersions
Red Lion Controls ST-IPm-6350 4.9.114
Red Lion Controls ST-IPm-8460 6.0.202
Red Lion Controls VT-IPm2m-113-D 4.9.114
Red Lion Controls VT-IPm2m-213-D 4.9.114
Red Lion Controls VT-mIPm-135-D 4.9.114
Red Lion Controls VT-mIPm-245-D 4.9.114
Weakness (CWE)
CWESourceDescription
CWE-749 cna CWE-749 Exposed Dangerous Method Or Function
CVSS scores (1)
ScoreSeverityVersionSourceVector
10.0 CRITICAL 3.1 cna CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Back to overview