7.5
CVSSv3

CVE-2023-39167

Published: 07/12/2023 Updated: 14/12/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

In SENEC Storage Box V1,V2 and V3 an unauthenticated remote attacker can obtain the devices' logfiles that contain sensitive data.

Vulnerable Product Search on Vulmon Subscribe to Product

enbw senec_storage_box_firmware

Exploits

EnBw SENEC Legacy Storage Box versions 1 through 3 suffer from a log disclosure vulnerability ...
EnBw SENEC Legacy Storage Box versions 1 through 3 suffer from a log disclosure vulnerability ...
EnBw SENEC Legacy Storage Box versions 1 through 3 appear to suffer from a hardcoded credential vulnerability ...

Mailing Lists

<!--X-Body-Begin--> <!--X-User-Header--> Full Disclosure mailing list archives <!--X-User-Header-End--> <!--X-TopPNI--> By Date By Thread </form> <!--X-TopPNI-End--> <!--X-MsgBody--> <!--X-Subject-Header-Begin--> Senec Inverters Home V1, V2, V3 Home &amp; Hybrid Use of Hard-coded Credentials - CVE-2023-39169 <!--X-Subject-Header ...