7.5
CVSSv3

CVE-2023-25369

Published: 14/06/2023 Updated: 28/06/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Siglent SDS 1104X-E SDS1xx4X-E_V6.1.37R9.ADS is vulnerable to Denial of Service on the user interface triggered by malformed SCPI command.

Vulnerable Product Search on Vulmon Subscribe to Product

siglent sds1204x-e_firmware 6.1.37r9.ads

siglent sds1104x-e_firmware 6.1.37r9.ads

siglent sds1074x-e_firmware 6.1.37r9.ads

Github Repositories

CVEs I have discovered

CVE CVEs I have discovered CVE-2023-25366 - 98 Crit - Insecure SCPI interface discloses web password in Siglent SDS 1104X-E Oscilliscope CVE-2023-25367 - 98 Crit - Siglent SDS 1104X-E SDS1xx4X-E_V6137R9ADS allows unfiltered user input resulting in Remote Code Execution (RCE) with SCPI interface or web server CVE-2023-25368 - 75 High - Siglent SDS 1104X-E SDS1xx4X-E_V6