CVE-2023-53776

HIGH

Screen SFT DAB 1.9.3 - Auth Bypass

Title source: llm

Description

Screen SFT DAB 1.9.3 contains an authentication bypass vulnerability that allows attackers to exploit weak session management by reusing IP-bound session identifiers. Attackers can issue unauthorized requests to the device management API by leveraging the session binding mechanism to perform critical operations on the transmitter.

Exploits (1)

exploitdb WORKING POC
by LiquidWorm · pythonremotehardware
https://www.exploit-db.com/exploits/51459

Scores

CVSS v3 8.8
EPSS 0.0032
EPSS Percentile 55.3%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-384
Status published
Products (2)
dbbroadcast/sft_dab_600\/c_firmware 1.9.3
DB Elettronica Telecomunicazioni SpA/Screen SFT DAB Series - Compact Radio DAB Transmitter 1.9.3
Published Dec 10, 2025
Tracked Since Feb 18, 2026