CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.6. Exploitation may require the attacker to be authenticated.
CVE
CVE-2023-5808
Severity
HIGH
CVSS
7.6
EPSS
0.54%
Original NVD Description
SMU versions prior to 14.8.7825.01 are susceptible to unintended information disclosure, through URL manipulation. Authenticated users in a Storage administrative role are able to access HNAS configuration backup and diagnostic data, that would normally be barred to that specific administrative role.
Related CVEs
Other vulnerabilities affecting the same vendor(s)