« Volver al listado

CVE-2023-36483

Estado: ModificadaMedia (6.5)—

Authorization bypass can be achieved by session ID prediction in MASmobile Classic Android  version 1.16.18 and earlier and

MASmobile Classic iOS version 1.7.24 and earlier

which allows remote attackers to retrieve sensitive data  including customer data, security system status, and event history.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (2)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2023-36483",
  "cveTags": [],
  "metrics": {
    "ssvcV203": [
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "ssvcData": {
          "id": "CVE-2023-36483",
          "role": "CISA Coordinator",
          "options": [
            {
              "exploitation": "poc"
            },
            {
              "automatable": "no"
            },
            {
              "technicalImpact": "total"
            }
          ],
          "version": "2.0.3",
          "timestamp": "2024-03-18T15:09:34.432630Z"
        }
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Secondary",
        "source": "productsecurity@carrier.com",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 6.5,
          "attackVector": "NETWORK",
          "baseSeverity": "MEDIUM",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N",
          "integrityImpact": "NONE",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "NONE",
          "privilegesRequired": "LOW",
          "confidentialityImpact": "HIGH"
        },
        "impactScore": 3.6,
        "exploitabilityScore": 2.8
      }
    ]
  },
  "affected": [
    {
      "source": "productsecurity@carrier.com",
      "affectedData": [
        {
          "vendor": "MAS (a Carrier brand)",
          "product": "MASmobile Classic",
          "versions": [
            {
              "status": "affected",
              "version": "1",
              "versionType": "custom",
              "lessThanOrEqual": "1.16.18"
            }
          ],
          "platforms": [
            "Android"
          ],
          "defaultStatus": "unaffected"
        },
        {
          "vendor": "MAS (a Carrier brand)",
          "product": "MASmobile Classic",
          "versions": [
            {
              "status": "affected",
              "version": "1",
              "versionType": "custom",
              "lessThanOrEqual": "1.7.24"
            }
          ],
          "platforms": [
            "iOS"
          ],
          "defaultStatus": "unaffected"
        },
        {
          "vendor": "MAS (a Carrier brand)",
          "product": "MAS ASP.Net Services",
          "versions": [
            {
              "status": "affected",
              "version": "1",
              "versionType": "custom",
              "lessThanOrEqual": "1.9"
            }
          ],
          "defaultStatus": "unaffected"
        }
      ]
    },
    {
      "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
      "affectedData": [
        {
          "cpes": [
            "cpe:2.3:a:carrier:masmobile_classic:*:*:*:*:*:*:*:*"
          ],
          "vendor": "carrier",
          "product": "masmobile_classic",
          "versions": [
            {
              "status": "affected",
              "version": "1",
              "versionType": "custom",
              "lessThanOrEqual": "1.16.18"
            },
            {
              "status": "affected",
              "version": "1",
              "versionType": "custom",
              "lessThanOrEqual": "1.7.24"
            }
          ],
          "defaultStatus": "unknown"
        },
        {
          "cpes": [
            "cpe:2.3:a:carrier:mas_asp.net_services:*:*:*:*:*:*:*:*"
          ],
          "vendor": "carrier",
          "product": "mas_asp.net_services",
          "versions": [
            {
              "status": "affected",
              "version": "1",
              "versionType": "custom",
              "lessThanOrEqual": "1.9"
            }
          ],
          "defaultStatus": "unknown"
        }
      ]
    }
  ],
  "published": "2024-03-16T05:15:18.577",
  "references": [
    {
      "url": "https://www.corporate.carrier.com/product-security/advisories-resources/",
      "tags": [
        "Not Applicable",
        "Vendor Advisory"
      ],
      "source": "productsecurity@carrier.com"
    },
    {
      "url": "https://www.corporate.carrier.com/product-security/advisories-resources/",
      "tags": [
        "Not Applicable",
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Secondary",
      "source": "productsecurity@carrier.com",
      "description": [
        {
          "lang": "en",
          "value": "CWE-639"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Authorization bypass can be achieved by session ID prediction in MASmobile Classic Android  version 1.16.18 and earlier and \n\nMASmobile Classic iOS version 1.7.24 and earlier\n\nwhich allows remote attackers to retrieve sensitive data  including customer data, security system status, and event history."
    },
    {
      "lang": "es",
      "value": "Se descubrió una omisión de autorización en la aplicación Carrier MASmobile Classic hasta la versión 1.16.18 para Android, la aplicación MASmobile Classic hasta la 1.7.24 para iOS y los servicios MAS ASP.Net hasta la 1.9. Esto se puede lograr mediante la predicción de ID de sesión, lo que permite a atacantes remotos recuperar datos confidenciales, incluidos datos de clientes, estado del sistema de seguridad e historial de eventos. NOTA: Esta vulnerabilidad solo afecta a productos que ya no son compatibles con el fabricante. Los productos afectados no pueden simplemente actualizarse; deben eliminarse, pero pueden reemplazarse por otro software de Carrier como se explica en el aviso de Carrier."
    }
  ],
  "lastModified": "2026-06-17T06:06:22.300",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:honeywell:masmobile_asp.net_services:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "BE09AFA3-320A-4184-8B0E-F3A39DF5CF84",
              "versionEndIncluding": "1.9"
            },
            {
              "criteria": "cpe:2.3:a:honeywell:masmobile_classic:*:*:*:*:*:iphone_os:*:*",
              "vulnerable": true,
              "matchCriteriaId": "5B65351B-D5D7-435D-BBE3-AF9EC7788C6F",
              "versionEndIncluding": "1.7.24"
            },
            {
              "criteria": "cpe:2.3:a:honeywell:masmobile_classic:*:*:*:*:*:android:*:*",
              "vulnerable": true,
              "matchCriteriaId": "E2CDD996-54DA-45FF-AC10-7C961A9BF0BE",
              "versionEndIncluding": "1.16.18"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "productsecurity@carrier.com"
}