VDB
BDU%3A2024-03897
BDU%3A2024-03897
PUBLISHED
CVSS 3.299999952316284 LOW
Уязвимость микропрограммного обеспечения модемов Telit Cinterion, связанная с раскрытием информации при помощи переменных среды, позволяющая нарушителю получить доступ к защищаемой информации
Risk Scores
CVSS 3.1
3.299999952316284
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Telit Cinterion | ELS61 | |
| Telit Cinterion | ELS81 | |
| Telit Cinterion | PDS6 | |
| Telit Cinterion | BGS5 | |
| Telit Cinterion | EHS8 | |
| Telit Cinterion | PDS8 | |
| Telit Cinterion, НПП «ИТЭЛМА» | BGS5, EHS5, EHS6, EHS8, PDS5, PDS6, PDS8, ELS61, ELS81, PLS62, БЭГ ИТЭЛМА 1824.3879600, БЭГ ИТЭЛМА 8450020004, БЭГ ИТЭЛМА 8450031410, БЭГ ИТЭЛМА 8450008475, БЭГ ИТЭЛМА 8450033434, БЭГ ИТЭЛМА 8450103571, БЭГ ИТЭЛМА 8450103773, БЭГ ИТЭЛМА 8450042687, БЭГ ИТЭЛМА 111.3879000, БЭГ ИТЭЛМА 18.3879600-ХХ | |
| Telit Cinterion | PLS62 | |
| Telit Cinterion | EHS6 | |
| Telit Cinterion | EHS5 | |
| Telit Cinterion | PDS5 |
Timeline
- Nov 9, 2023 CVE Published
- Jun 13, 2024 PoC Published
- Aug 20, 2024 CVE Updated
- Apr 10, 2025 PoC Published
References
- https://ics-cert.kaspersky.ru/advisories/2023/11/09/klcert-22-212-telit-cinterion-thales-gemalto-modules-exposure-of-sensitive-information-through-environmental-variables url
- https://www.cve.org/CVERecord?id=CVE-2023-47615 url
- KLCERT-22-212: Telit Cinterion (Thales/Gemalto) modules. Exposure of Sensitive Information Through Environmental Variables third-party-advisory