An issue in Multilaser RE160 firmware v5.07.51_pt_MTL01 and v5.07.52_pt_MTL01 allows attackers to bypass the access control and gain complete access to the application via supplying a crafted cookie.
History

Tue, 07 Jan 2025 15:45:00 +0000

Type Values Removed Values Added
First Time appeared Multilaser
Multilaser re160
Multilaser re160 Firmware
Weaknesses NVD-CWE-noinfo
CPEs cpe:2.3:h:multilaser:re160:-:*:*:*:*:*:*:*
cpe:2.3:o:multilaser:re160_firmware:5.07.51_pt_mtl01:*:*:*:*:*:*:*
cpe:2.3:o:multilaser:re160_firmware:5.07.52_pt_mtl01:*:*:*:*:*:*:*
Vendors & Products Multilaser
Multilaser re160
Multilaser re160 Firmware

Mon, 26 Aug 2024 21:00:00 +0000

Type Values Removed Values Added
Weaknesses CWE-284
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2024-03-06T00:00:00

Updated: 2024-08-26T19:48:30.169Z

Reserved: 2023-07-25T00:00:00

Link: CVE-2023-38946

cve-icon Vulnrichment

Updated: 2024-08-02T17:54:39.709Z

cve-icon NVD

Status : Analyzed

Published: 2024-03-06T00:15:52.300

Modified: 2025-01-07T15:16:04.743

Link: CVE-2023-38946

cve-icon Redhat

No data.