CVE Published: 17/03/2023 |
CVE Updated: 02/08/2024 |
CVE Year: 2023 Source: trendmicro |
Vendor: Trend Micro, Inc. |
Product: TXOne Networks StellarOne Status : PUBLISHED
CVE-2023-25069 Description
TXOne StellarOne has an improper access control privilege escalation vulnerability in every version before V2.0.1160 that could allow a malicious, falsely authenticated user to escalate his privileges to administrator level. With these privileges, an attacker could perform actions they are not authorized to.
Please note: an attacker must first obtain a low-privileged authenticated user\'s profile on the target system in order to exploit this vulnerability.