Title: Screen SFT DAB 600/C Authentication Bypass Password Change Exploit Advisory ID: ZSL-2023-5772 Type: Local/Remote Impact: Privilege Escalation, Security Bypass Risk: (4/5) Release Date: 13.05.2023 Summary: The Screen SFT DAB 600/C Transmitter has a vulnerability that allows an attacker to bypass controls by reusing the same IP address assigned to the victim user. Vendor: DB Elettronica Telecomunicazioni SpA - https://www.screen.it Affected Version: Firmware: 1.9.3 BIOS Firmware: 7.1 (Apr 19 2021) GUI: 2.46 FPGA: 169.55 UC: 6.15 Vendor Status: [19.03.2023] Vulnerability discovered. [20.03.2023] Vendor contacted. [12.05.2023] No response from the vendor. [13.05.2023] Public security advisory released. References: 1. https://www.zeroscience.mk/en/vulnerabilities/ZSL-2023-5776.php 2. https://www.exploit-db.com/exploits/51456 3. https://packetstormsecurity.com/files/172327/