CVE Feed

    Dashboard / CVE / CVE-2023-31152

    CVE-2023-31152

    An Authentication Bypass Using an Alternate Path or Channel vulnerability in the Schweitzer Engineering Laboratories Real-Time Automation Controller (SEL RTAC) Web Interface allows Authentication Bypass. See SEL Service Bulletin dated 2022-11-15 for more details.

    Published:May 10, 2023
    Last Modified:Jan 24, 2025
    EPS:May 10, 2023
    EPSS Score:0.00029
    CVSS Score:4

    Affected Products

    Vendor
    Selinc
    Product
    Sel-2241 Rtac Module
    Vendor
    Selinc
    Product
    Sel-2241 Rtac Module Firmware
    Vendor
    Selinc
    Product
    Sel-3350
    Vendor
    Selinc
    Product
    Sel-3350 Firmware
    Vendor
    Selinc
    Product
    Sel-3505
    Vendor
    Selinc
    Product
    Sel-3505-3
    Vendor
    Selinc
    Product
    Sel-3505-3 Firmware
    Vendor
    Selinc
    Product
    Sel-3505 Firmware
    Vendor
    Selinc
    Product
    Sel-3530
    Vendor
    Selinc
    Product
    Sel-3530-4
    Vendor
    Selinc
    Product
    Sel-3530-4 Firmware
    Vendor
    Selinc
    Product
    Sel-3530 Firmware
    Vendor
    Selinc
    Product
    Sel-3532
    Vendor
    Selinc
    Product
    Sel-3532 Firmware
    Vendor
    Selinc
    Product
    Sel-3555
    Vendor
    Selinc
    Product
    Sel-3555 Firmware
    Vendor
    Selinc
    Product
    Sel-3560e
    Vendor
    Selinc
    Product
    Sel-3560e Firmware
    Vendor
    Selinc
    Product
    Sel-3560s
    Vendor
    Selinc
    Product
    Sel-3560s Firmware

    Exploits

    No exploit reference

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High