NA

CVE-2023-1617

Published: 14/04/2023 Updated: 24/04/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Improper Authentication vulnerability in B&R Industrial Automation B&R VC4 (VNC-Server modules).  This vulnerability may allow an unauthenticated network-based malicious user to bypass the authentication mechanism of the VC4 visualization on affected devices. The impact of this vulnerability depends on the functionality provided in the visualization. This issue affects B&R VC4: from 3.* up to and including 3.96.7, from 4.0* up to and including 4.06.7, from 4.1* up to and including 4.16.3, from 4.2* up to and including 4.26.8, from 4.3* up to and including 4.34.6, from 4.4* up to and including 4.45.1, from 4.5* up to and including 4.45.3, from 4.7* up to and including 4.72.9.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

br-automation vc4