CVE-2023-43845
Severity CVSS v4.0:
Pending analysis
Type:
CWE-269
Improper Privilege Management
Publication date:
28/05/2024
Last modified:
30/05/2025
Description
Aten PE6208 2.3.228 and 2.4.232 have default credentials for the privileged telnet account. The user is not asked to change the credentials after first login. If not changed, attackers can log in to the telnet console and gain administrator privileges.
Impact
Base Score 3.x
9.80
Severity 3.x
CRITICAL
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:aten:pe6208_firmware:*:*:*:*:*:*:*:* | 2.3.228 (including) | 2.4.239 (excluding) |
| cpe:2.3:h:aten:pe6208:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



