Screen SFT DAB 1.9.3 contains a weak session management vulnerability that allows attackers to bypass authentication controls by reusing IP address-bound session identifiers. Attackers can exploit the vulnerable API by intercepting and reusing established sessions to remove user accounts without proper authorization.
History

Thu, 11 Dec 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 11 Dec 2025 16:30:00 +0000

Type Values Removed Values Added
First Time appeared Dbbroadcast
Dbbroadcast sft Dab Series
Vendors & Products Dbbroadcast
Dbbroadcast sft Dab Series

Wed, 10 Dec 2025 21:15:00 +0000

Type Values Removed Values Added
Description Screen SFT DAB 1.9.3 contains a weak session management vulnerability that allows attackers to bypass authentication controls by reusing IP address-bound session identifiers. Attackers can exploit the vulnerable API by intercepting and reusing established sessions to remove user accounts without proper authorization.
Title Screen SFT DAB 1.9.3 Authentication Bypass via IP Session Management
Weaknesses CWE-384
References
Metrics cvssV4_0

{'score': 7.1, 'vector': 'CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:L/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published: 2025-12-10T21:06:59.907Z

Updated: 2025-12-11T18:52:17.753Z

Reserved: 2025-12-07T13:16:38.432Z

Link: CVE-2023-53741

cve-icon Vulnrichment

Updated: 2025-12-11T15:52:00.860Z

cve-icon NVD

Status : Received

Published: 2025-12-10T21:16:03.420

Modified: 2025-12-11T19:15:51.787

Link: CVE-2023-53741

cve-icon Redhat

No data.