CVE Database
/

CVE-2023-36607

Back to search

CVE-2023-36607

Published: Jun 29, 2023

Modified: Nov 26, 2024

PUBLISHED

Description

The affected TBox RTUs are missing authorization for running some API commands. An attacker running these commands could reveal sensitive information such as software versions and web server file contents.

VendorProductVersions

Ovarro

TBox RM2

affected
0 - <= 1.50.598

Ovarro

TBox TG2

affected
0 - <= 1.50.598

Ovarro

TBox LT2

affected
0 - <= 1.50.598

Ovarro

TBox MS-CPU32-S2

affected
0 - <= 1.50.598

Ovarro

TBox MS-CPU32

affected
0 - <= 1.50.598

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now