CVE-2023-34388
Improper authentication could lead to session hijacking
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
An Improper Authentication vulnerability in the Schweitzer Engineering Laboratories SEL-451 could allow a remote unauthenticated attacker to potentially perform session hijacking attack and bypass authentication. See product Instruction Manual Appendix A dated 20230830 for more details.
Una vulnerabilidad de autenticación incorrecta en Schweitzer Engineering Laboratories SEL-451 podría permitir que un atacante remoto no autenticado realice potencialmente un ataque de secuestro de sesión y omita la autenticación. Consulte el Apéndice A del Manual de instrucciones del producto con fecha 20230830 para obtener más detalles.
An Improper Authentication vulnerability in the Schweitzer Engineering Laboratories SEL-451 could allow a remote unauthenticated attacker to potentially perform session hijacking attack and bypass authentication. See product Instruction Manual Appendix A dated 20230830 for more details.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2023-06-02 CVE Reserved
- 2023-11-30 CVE Published
- 2024-08-02 CVE Updated
- 2025-01-01 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-287: Improper Authentication
CAPEC
- CAPEC-115: Authentication Bypass
- CAPEC-593: Session Hijacking
References (2)
URL | Tag | Source |
---|---|---|
https://www.nozominetworks.com/blog | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://selinc.com/support/security-notifications/external-reports | 2023-12-06 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Selinc Search vendor "Selinc" | Sel-451 Firmware Search vendor "Selinc" for product "Sel-451 Firmware" | >= r315-v0 < r315-v4 Search vendor "Selinc" for product "Sel-451 Firmware" and version " >= r315-v0 < r315-v4" | - |
Affected
| in | Selinc Search vendor "Selinc" | Sel-451 Search vendor "Selinc" for product "Sel-451" | - | - |
Safe
|
Selinc Search vendor "Selinc" | Sel-451 Firmware Search vendor "Selinc" for product "Sel-451 Firmware" | >= r316-v0 < r316-v4 Search vendor "Selinc" for product "Sel-451 Firmware" and version " >= r316-v0 < r316-v4" | - |
Affected
| in | Selinc Search vendor "Selinc" | Sel-451 Search vendor "Selinc" for product "Sel-451" | - | - |
Safe
|
Selinc Search vendor "Selinc" | Sel-451 Firmware Search vendor "Selinc" for product "Sel-451 Firmware" | >= r317-v0 < r317-v4 Search vendor "Selinc" for product "Sel-451 Firmware" and version " >= r317-v0 < r317-v4" | - |
Affected
| in | Selinc Search vendor "Selinc" | Sel-451 Search vendor "Selinc" for product "Sel-451" | - | - |
Safe
|
Selinc Search vendor "Selinc" | Sel-451 Firmware Search vendor "Selinc" for product "Sel-451 Firmware" | >= r318-v0 < r318-v5 Search vendor "Selinc" for product "Sel-451 Firmware" and version " >= r318-v0 < r318-v5" | - |
Affected
| in | Selinc Search vendor "Selinc" | Sel-451 Search vendor "Selinc" for product "Sel-451" | - | - |
Safe
|
Selinc Search vendor "Selinc" | Sel-451 Firmware Search vendor "Selinc" for product "Sel-451 Firmware" | >= r320-v0 < r320-v3 Search vendor "Selinc" for product "Sel-451 Firmware" and version " >= r320-v0 < r320-v3" | - |
Affected
| in | Selinc Search vendor "Selinc" | Sel-451 Search vendor "Selinc" for product "Sel-451" | - | - |
Safe
|
Selinc Search vendor "Selinc" | Sel-451 Firmware Search vendor "Selinc" for product "Sel-451 Firmware" | >= r321-v0 < r321-v3 Search vendor "Selinc" for product "Sel-451 Firmware" and version " >= r321-v0 < r321-v3" | - |
Affected
| in | Selinc Search vendor "Selinc" | Sel-451 Search vendor "Selinc" for product "Sel-451" | - | - |
Safe
|
Selinc Search vendor "Selinc" | Sel-451 Firmware Search vendor "Selinc" for product "Sel-451 Firmware" | >= r322-v0 < r322-v3 Search vendor "Selinc" for product "Sel-451 Firmware" and version " >= r322-v0 < r322-v3" | - |
Affected
| in | Selinc Search vendor "Selinc" | Sel-451 Search vendor "Selinc" for product "Sel-451" | - | - |
Safe
|
Selinc Search vendor "Selinc" | Sel-451 Firmware Search vendor "Selinc" for product "Sel-451 Firmware" | >= r323-v0 < r323-v5 Search vendor "Selinc" for product "Sel-451 Firmware" and version " >= r323-v0 < r323-v5" | - |
Affected
| in | Selinc Search vendor "Selinc" | Sel-451 Search vendor "Selinc" for product "Sel-451" | - | - |
Safe
|
Selinc Search vendor "Selinc" | Sel-451 Firmware Search vendor "Selinc" for product "Sel-451 Firmware" | >= r324-v0 < r324-v4 Search vendor "Selinc" for product "Sel-451 Firmware" and version " >= r324-v0 < r324-v4" | - |
Affected
| in | Selinc Search vendor "Selinc" | Sel-451 Search vendor "Selinc" for product "Sel-451" | - | - |
Safe
|
Selinc Search vendor "Selinc" | Sel-451 Firmware Search vendor "Selinc" for product "Sel-451 Firmware" | >= r325-v0 < r325-v3 Search vendor "Selinc" for product "Sel-451 Firmware" and version " >= r325-v0 < r325-v3" | - |
Affected
| in | Selinc Search vendor "Selinc" | Sel-451 Search vendor "Selinc" for product "Sel-451" | - | - |
Safe
|
Selinc Search vendor "Selinc" | Sel-451 Firmware Search vendor "Selinc" for product "Sel-451 Firmware" | r326-v0 Search vendor "Selinc" for product "Sel-451 Firmware" and version "r326-v0" | - |
Affected
| in | Selinc Search vendor "Selinc" | Sel-451 Search vendor "Selinc" for product "Sel-451" | - | - |
Safe
|
Selinc Search vendor "Selinc" | Sel-451 Firmware Search vendor "Selinc" for product "Sel-451 Firmware" | r327-v0 Search vendor "Selinc" for product "Sel-451 Firmware" and version "r327-v0" | - |
Affected
| in | Selinc Search vendor "Selinc" | Sel-451 Search vendor "Selinc" for product "Sel-451" | - | - |
Safe
|