CVE-2023-51438

A vulnerability has been identified in SIMATIC IPC1047E (All versions with maxView Storage Manager < V4.14.00.26068 on Windows), SIMATIC IPC647E (All versions with maxView Storage Manager < V4.14.00.26068 on Windows), SIMATIC IPC847E (All versions with maxView Storage Manager < V4.14.00.26068 on Windows). In default installations of maxView Storage Manager where Redfish® server is configured for remote system management, a vulnerability has been identified that can provide unauthorized access.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:microchip:maxview_storage_manager:*:*:*:*:*:windows:*:*
OR cpe:2.3:h:siemens:simatic_ipc1047e:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_ipc647e:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_ipc847e:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-01-09 10:15

Updated : 2024-01-16 16:16


NVD link : CVE-2023-51438

Mitre link : CVE-2023-51438

CVE.ORG link : CVE-2023-51438


JSON object : View

Products Affected

microchip

  • maxview_storage_manager

siemens

  • simatic_ipc1047e
  • simatic_ipc847e
  • simatic_ipc647e
CWE
NVD-CWE-noinfo CWE-20

Improper Input Validation