CVE-2023-6929
EuroTel ETL3100 versions v01c01 and v01x37 are vulnerable to insecure direct object references that occur when the application provides direct access to objects based on user-supplied input. As a result of this vulnerability, attackers can bypass authorization, access the hidden resources on the system, and execute privileged functionalities.
Published:Dec 19, 2023
Last Modified:May 6, 2025
EPS:Dec 19, 2023
EPSS Score:0.00011
CVSS Score:7.5
Affected Products
Vendor
Product
Action
Vendor
Eurotel
Product
Etl3100
Eurotel
Etl3100
Vendor
Eurotel
Product
Etl3100 Firmware
Eurotel
Etl3100 Firmware
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
No CAPEC recorded yet
Related CVEs
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
