9.8
CVSSv3

CVE-2023-25366

Published: 16/06/2023 Updated: 07/07/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

In Siglent SDS 1104X-E SDS1xx4X-E_V6.1.37R9.ADS, insecure SCPI interface discloses web password.

Vulnerable Product Search on Vulmon Subscribe to Product

siglent sds_1104x-e_firmware sds1xx4x-e_v6.1.37r9.ads

Github Repositories

CVEs I have discovered

CVE CVEs I have discovered CVE-2023-25366 - 98 Crit - Insecure SCPI interface discloses web password in Siglent SDS 1104X-E Oscilliscope CVE-2023-25367 - 98 Crit - Siglent SDS 1104X-E SDS1xx4X-E_V6137R9ADS allows unfiltered user input resulting in Remote Code Execution (RCE) with SCPI interface or web server CVE-2023-25368 - 75 High - Siglent SDS 1104X-E SDS1xx4X-E_V6