CVE Vulnerabilities

CVE-2023-45844

Published: Oct 25, 2023 | Modified: Sep 10, 2024
CVSS 3.x
6.8
MEDIUM
Source:
NVD
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

The vulnerability allows a low privileged user that have access to the device when locked in Kiosk mode to install an arbitrary Android application and leverage it to have access to critical device settings such as the device power management or eventually the device secure settings (ADB debug).

Affected Software

Name Vendor Start Version End Version
Ctrlx_hmi_web_panel_wr2107 Boschrexroth - (including) - (including)

References