CVE-2023-27920
MEDIUMSolarView Compact SV-CPT-MC310 and SV-CPT-MC310F < 8.10 - Authenticated System Date/Time Alteration
Title source: llmDescription
Improper access control vulnerability in the system date/time setting page of SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10 and SV-CPT-MC310F versions prior to Ver.8.10 allows a remote authenticated attacker to alter system date/time of the affected product.
References (3)
Core 3
Core References
Third Party Advisory
https://jvn.jp/en/vu/JVNVU92106300/
Scores
CVSS v3
4.3
EPSS
0.0183
EPSS Percentile
76.1%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
CWE
CWE-863
Status
published
Products (2)
contec/sv-cpt-mc310_firmware
< 8.10
contec/sv-cpt-mc310f_firmware
< 8.10
Published
May 23, 2023
Tracked Since
Feb 18, 2026