cbcvebase.
CVE-2023-34390
published 2023-11-30

CVE-2023-34390: An input validation vulnerability in the Schweitzer Engineering Laboratories SEL-451 could allow a remote authenticated attacker to create a denial of service…

PriorityP430medium6.5CVSS 3.1
AVNACLPRLUINSUCNINAH
EPSS
0.66%
47.1th percentile
An input validation vulnerability in the Schweitzer Engineering Laboratories SEL-451 could allow a remote authenticated attacker to create a denial of service against the system and locking out services. See product Instruction Manual Appendix A dated 20230830 for more details.

Affected

24 ranges
VendorProductVersion rangeFixed in
schweitzer_engineering_laboratoriessel-451>= R315-V0 < R315-V4R315-V4
schweitzer_engineering_laboratoriessel-451>= R316-V0 < R316-V4R316-V4
schweitzer_engineering_laboratoriessel-451>= R317-V0 < R317-V4R317-V4
schweitzer_engineering_laboratoriessel-451>= R318-V0 < R318-V5R318-V5
schweitzer_engineering_laboratoriessel-451>= R320-V0 < R320-V3R320-V3
schweitzer_engineering_laboratoriessel-451>= R321-V0 < R321-V3R321-V3
schweitzer_engineering_laboratoriessel-451>= R322-V0 < R322-V3R322-V3
schweitzer_engineering_laboratoriessel-451>= R323-V0 < R323-V5R323-V5
schweitzer_engineering_laboratoriessel-451>= R324-V0 < R324-V4R324-V4
schweitzer_engineering_laboratoriessel-451>= R325-V0 < R325-V3R325-V3
schweitzer_engineering_laboratoriessel-451>= R326-V0 < R326-V1R326-V1
schweitzer_engineering_laboratoriessel-451>= R327-V0 < R327-V1R327-V1
selincsel-451_firmware
selincsel-451_firmware
selincsel-451_firmware>= r315-v0 < r315-v4r315-v4
selincsel-451_firmware>= r316-v0 < r316-v4r316-v4
selincsel-451_firmware>= r317-v0 < r317-v4r317-v4
selincsel-451_firmware>= r318-v0 < r318-v5r318-v5
selincsel-451_firmware>= r320-v0 < r320-v3r320-v3
selincsel-451_firmware>= r321-v0 < r321-v3r321-v3
selincsel-451_firmware>= r322-v0 < r322-v3r322-v3
selincsel-451_firmware>= r323-v0 < r323-v5r323-v5
selincsel-451_firmware>= r324-v0 < r324-v4r324-v4
selincsel-451_firmware>= r325-v0 < r325-v3r325-v3
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.