CVE-2023-53775

MEDIUM

Screen SFT DAB 1.9.3 - Auth Bypass

Title source: llm

Description

Screen SFT DAB 1.9.3 contains an authentication bypass vulnerability that allows attackers to change user passwords by exploiting weak session management controls. Attackers can reuse IP-bound session identifiers to issue unauthorized requests to the userManager API and modify user credentials without proper authentication.

Exploits (1)

exploitdb WORKING POC
by LiquidWorm · pythonremotehardware
https://www.exploit-db.com/exploits/51456

Scores

CVSS v3 6.5
EPSS 0.0025
EPSS Percentile 47.9%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

Details

CWE
CWE-384
Status published
Products (2)
dbbroadcast/sft_dab_600\/c_firmware 1.9.3
DB Elettronica Telecomunicazioni SpA/Screen SFT DAB Series - Compact Radio DAB Transmitter 1.9.3
Published Dec 10, 2025
Tracked Since Feb 18, 2026