📦 Infrasuite Device Master

by Deltaww

🔍 What is Infrasuite Device Master?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-47207

CRITICAL CVSS 9.8 Nov 30, 2023

This critical vulnerability in Delta Electronics InfraSuite Device Master allows unauthenticated attackers to execute arbitrary code with local administrator privileges. It affects version 1.0.7 of th...

CVE-2023-39226

CRITICAL CVSS 9.8 Nov 30, 2023

This critical vulnerability in Delta Electronics InfraSuite Device Master allows unauthenticated attackers to execute arbitrary code remotely by sending a single UDP packet. Affected organizations usi...

CVE-2023-34347

CRITICAL CVSS 9.8 Jul 10, 2023

Delta Electronics InfraSuite Device Master versions before 1.0.7 contain insecure deserialization vulnerabilities that allow remote attackers to execute arbitrary code. This affects industrial control...

CVE-2023-1133

CRITICAL CVSS 9.8 Mar 27, 2023

This vulnerability allows unauthenticated remote attackers to execute arbitrary code on Delta Electronics InfraSuite Device Master systems by sending malicious UDP packets to port 10100. The service d...

CVE-2023-1136

CRITICAL CVSS 9.8 Mar 27, 2023

This vulnerability allows unauthenticated attackers to generate valid authentication tokens in Delta Electronics InfraSuite Device Master, leading to complete authentication bypass. It affects all ver...

CVE-2023-1140

CRITICAL CVSS 9.8 Mar 27, 2023

This vulnerability in Delta Electronics InfraSuite Device Master allows unauthenticated remote attackers to execute arbitrary code with administrator privileges. It affects industrial control systems ...

CVE-2023-47279

HIGH CVSS 7.5 Nov 30, 2023

Delta Electronics InfraSuite Device Master v1.0.7 contains a path traversal vulnerability (CWE-22) that allows unauthenticated attackers to access sensitive files via specially crafted UDP packets. Th...

CVE-2023-1142

HIGH CVSS 7.5 Mar 27, 2023

This vulnerability in Delta Electronics InfraSuite Device Master allows attackers to bypass authentication and retrieve sensitive system files and credentials through URL decoding manipulation. It aff...

CVE-2023-1144

HIGH CVSS 8.8 Mar 27, 2023

Delta Electronics InfraSuite Device Master versions before 1.0.5 contain an improper access control vulnerability in the Device-Gateway service. Attackers can bypass authorization mechanisms to escala...

CVE-2023-1135

HIGH CVSS 7.8 Mar 27, 2023

This vulnerability in Delta Electronics InfraSuite Device Master allows attackers to set incorrect directory permissions, potentially leading to local privilege escalation. Systems running InfraSuite ...

CVE-2023-1138

HIGH CVSS 7.5 Mar 27, 2023

Delta Electronics InfraSuite Device Master versions before 1.0.5 have an improper access control vulnerability that allows attackers to retrieve Gateway configuration files containing plaintext creden...