← Back to browse · API

CVE-2023-49617

Severity
CRITICAL
CVSS
10.0
EPSS
0.00798
Risk score
40.28
CISA KEV
No
PoC
No
Published
2024-02-01
Modified
2025-06-06
First seen
2026-08-07
Aliases
EUVD-2023-53561, GHSA-57QM-6JGH-X438
Products
MachineSense:FeverWarn DataHub RaspberryPi, MachineSense:FeverWarn ESP32, MachineSense:FeverWarn RaspberryPi
Sources
euvd EUVD-2023-53561

Description

The MachineSense application programmable interface (API) is improperly protected and can be accessed without authentication. A remote attacker could retrieve and modify sensitive information without any authentication.

References