CVE-2023-37832

HIGH

Elenos Etg150 Firmware - Brute Force

Title source: rule
STIX 2.1

Description

A lack of rate limiting in Elenos ETG150 FM transmitter v3.12 allows attackers to obtain user credentials via brute force and cause other unspecified impacts.

Scores

CVSS v3 7.5
EPSS 0.0018
EPSS Percentile 39.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-307
Status published
Products (1)
elenos/etg150_firmware 3.12
Published Oct 31, 2023
Tracked Since Feb 18, 2026