CVE-2023-53775
MEDIUMScreen SFT DAB 1.9.3 - Auth Bypass
Title source: llmDescription
Screen SFT DAB 1.9.3 contains an authentication bypass vulnerability that allows attackers to change user passwords by exploiting weak session management controls. Attackers can reuse IP-bound session identifiers to issue unauthorized requests to the userManager API and modify user credentials without proper authentication.
Exploits (1)
exploitdb
WORKING POC
by LiquidWorm · pythonremotehardware
https://www.exploit-db.com/exploits/51456
References (6)
Scores
CVSS v3
6.5
EPSS
0.0025
EPSS Percentile
47.9%
Attack Vector
ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Details
CWE
CWE-384
Status
published
Products (2)
dbbroadcast/sft_dab_600\/c_firmware
1.9.3
DB Elettronica Telecomunicazioni SpA/Screen SFT DAB Series - Compact Radio DAB Transmitter
1.9.3
Published
Dec 10, 2025
Tracked Since
Feb 18, 2026