Schweitzer Engineering Laboratories SEL-5030 acSELerator QuickSet Software是美国Schweitzer Engineering Laboratories公司的一个配置、调试和管理电力系统保护、控制、计量和监测设备的工具。 Schweitzer Engineering Laboratories SEL-5030 acSELerator QuickSet 存在安全漏洞,该漏洞源于对某些特殊元素的过滤不充分,可能导致命令注入。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Schweitzer Engineering Laboratories | SEL-5030 acSELerator QuickSet Software | 0 ~ 7.1.3.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-31175 | 8.8 HIGH | Execution with Unnecessary Privileges |
| CVE-2023-34392 | 8.2 HIGH | Missing Authentication for Critical Function |
| CVE-2023-31173 | 7.7 HIGH | Use of Hard-coded Credentials |
| CVE-2023-34391 | 7.4 HIGH | Insecure Inherited Permissions |
| CVE-2023-31174 | 7.4 HIGH | Cross-Site Request Forgery (CSRF) |
| CVE-2023-31171 | 5.9 MEDIUM | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') |
| CVE-2023-31170 | 5.9 MEDIUM | Inclusion of Functionality from Untrusted Control Sphere |
| CVE-2023-31168 | 5.5 MEDIUM | Inclusion of Functionality from Untrusted Control Sphere |
| CVE-2023-31167 | 5.0 MEDIUM | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') |
| CVE-2023-31169 | 4.8 MEDIUM | Improper Handling of Unicode Encoding |
No comments yet