CVE-2023-36483
Estado: ModificadaMedia (6.5)—
Authorization bypass can be achieved by session ID prediction in MASmobile Classic Android version 1.16.18 and earlier and
MASmobile Classic iOS version 1.7.24 and earlier
which allows remote attackers to retrieve sensitive data including customer data, security system status, and event history.
CVSS
- Versión: 3.1
- Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
- Puntuación base: 6.5
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 0.49%
- Percentil entre todas las CVEs puntuadas: 40
- Fecha de la puntuación: 7/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (2)
CWE
- CWE-639
Referencias
JSON original (NVD)
Mostrar
{
"id": "CVE-2023-36483",
"cveTags": [],
"metrics": {
"ssvcV203": [
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"ssvcData": {
"id": "CVE-2023-36483",
"role": "CISA Coordinator",
"options": [
{
"exploitation": "poc"
},
{
"automatable": "no"
},
{
"technicalImpact": "total"
}
],
"version": "2.0.3",
"timestamp": "2024-03-18T15:09:34.432630Z"
}
}
],
"cvssMetricV31": [
{
"type": "Secondary",
"source": "productsecurity@carrier.com",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.1",
"baseScore": 6.5,
"attackVector": "NETWORK",
"baseSeverity": "MEDIUM",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N",
"integrityImpact": "NONE",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"availabilityImpact": "NONE",
"privilegesRequired": "LOW",
"confidentialityImpact": "HIGH"
},
"impactScore": 3.6,
"exploitabilityScore": 2.8
}
]
},
"affected": [
{
"source": "productsecurity@carrier.com",
"affectedData": [
{
"vendor": "MAS (a Carrier brand)",
"product": "MASmobile Classic",
"versions": [
{
"status": "affected",
"version": "1",
"versionType": "custom",
"lessThanOrEqual": "1.16.18"
}
],
"platforms": [
"Android"
],
"defaultStatus": "unaffected"
},
{
"vendor": "MAS (a Carrier brand)",
"product": "MASmobile Classic",
"versions": [
{
"status": "affected",
"version": "1",
"versionType": "custom",
"lessThanOrEqual": "1.7.24"
}
],
"platforms": [
"iOS"
],
"defaultStatus": "unaffected"
},
{
"vendor": "MAS (a Carrier brand)",
"product": "MAS ASP.Net Services",
"versions": [
{
"status": "affected",
"version": "1",
"versionType": "custom",
"lessThanOrEqual": "1.9"
}
],
"defaultStatus": "unaffected"
}
]
},
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"affectedData": [
{
"cpes": [
"cpe:2.3:a:carrier:masmobile_classic:*:*:*:*:*:*:*:*"
],
"vendor": "carrier",
"product": "masmobile_classic",
"versions": [
{
"status": "affected",
"version": "1",
"versionType": "custom",
"lessThanOrEqual": "1.16.18"
},
{
"status": "affected",
"version": "1",
"versionType": "custom",
"lessThanOrEqual": "1.7.24"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:a:carrier:mas_asp.net_services:*:*:*:*:*:*:*:*"
],
"vendor": "carrier",
"product": "mas_asp.net_services",
"versions": [
{
"status": "affected",
"version": "1",
"versionType": "custom",
"lessThanOrEqual": "1.9"
}
],
"defaultStatus": "unknown"
}
]
}
],
"published": "2024-03-16T05:15:18.577",
"references": [
{
"url": "https://www.corporate.carrier.com/product-security/advisories-resources/",
"tags": [
"Not Applicable",
"Vendor Advisory"
],
"source": "productsecurity@carrier.com"
},
{
"url": "https://www.corporate.carrier.com/product-security/advisories-resources/",
"tags": [
"Not Applicable",
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Secondary",
"source": "productsecurity@carrier.com",
"description": [
{
"lang": "en",
"value": "CWE-639"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Authorization bypass can be achieved by session ID prediction in MASmobile Classic Android version 1.16.18 and earlier and \n\nMASmobile Classic iOS version 1.7.24 and earlier\n\nwhich allows remote attackers to retrieve sensitive data including customer data, security system status, and event history."
},
{
"lang": "es",
"value": "Se descubrió una omisión de autorización en la aplicación Carrier MASmobile Classic hasta la versión 1.16.18 para Android, la aplicación MASmobile Classic hasta la 1.7.24 para iOS y los servicios MAS ASP.Net hasta la 1.9. Esto se puede lograr mediante la predicción de ID de sesión, lo que permite a atacantes remotos recuperar datos confidenciales, incluidos datos de clientes, estado del sistema de seguridad e historial de eventos. NOTA: Esta vulnerabilidad solo afecta a productos que ya no son compatibles con el fabricante. Los productos afectados no pueden simplemente actualizarse; deben eliminarse, pero pueden reemplazarse por otro software de Carrier como se explica en el aviso de Carrier."
}
],
"lastModified": "2026-06-17T06:06:22.300",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:honeywell:masmobile_asp.net_services:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "BE09AFA3-320A-4184-8B0E-F3A39DF5CF84",
"versionEndIncluding": "1.9"
},
{
"criteria": "cpe:2.3:a:honeywell:masmobile_classic:*:*:*:*:*:iphone_os:*:*",
"vulnerable": true,
"matchCriteriaId": "5B65351B-D5D7-435D-BBE3-AF9EC7788C6F",
"versionEndIncluding": "1.7.24"
},
{
"criteria": "cpe:2.3:a:honeywell:masmobile_classic:*:*:*:*:*:android:*:*",
"vulnerable": true,
"matchCriteriaId": "E2CDD996-54DA-45FF-AC10-7C961A9BF0BE",
"versionEndIncluding": "1.16.18"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "productsecurity@carrier.com"
}