CVE-2023-26511

A Hard Coded Admin Credentials issue in the Web-UI Admin Panel in Propius MachineSelector 6.6.0 and 6.6.1 allows remote attackers to gain access to the admin panel Propiusadmin.php, which allows taking control of the affected system.
References
Link Resource
https://www.propius.de/ms_security.html Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:propius:machineselector:6.6.0:*:*:*:*:*:*:*
cpe:2.3:a:propius:machineselector:6.6.1:*:*:*:*:*:*:*

History

20 Mar 2023, 20:19

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CWE CWE-798
CPE cpe:2.3:a:propius:machineselector:6.6.1:*:*:*:*:*:*:*
cpe:2.3:a:propius:machineselector:6.6.0:*:*:*:*:*:*:*
References (MISC) https://www.propius.de/ms_security.html - (MISC) https://www.propius.de/ms_security.html - Vendor Advisory

14 Mar 2023, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-03-14 21:15

Updated : 2024-02-04 23:14


NVD link : CVE-2023-26511

Mitre link : CVE-2023-26511

CVE.ORG link : CVE-2023-26511


JSON object : View

Products Affected

propius

  • machineselector
CWE
CWE-798

Use of Hard-coded Credentials