cbcvebase.
CVE-2023-27920
published 2023-05-23

CVE-2023-27920: Improper access control vulnerability in the system date/time setting page of SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10 and SV-CPT-MC310F…

PriorityP426medium4.3CVSS 3.1
AVNACLPRLUINSUCNILAN
EPSS
1.83%
76.2th percentile
Improper access control vulnerability in the system date/time setting page of SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10 and SV-CPT-MC310F versions prior to Ver.8.10 allows a remote authenticated attacker to alter system date/time of the affected product.

Affected

3 ranges
VendorProductVersion rangeFixed in
contecsv-cpt-mc310_firmware< 8.108.10
contecsv-cpt-mc310f_firmware< 8.108.10
contec_co_ltdsolarview_compact
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.