logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2023-28865

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2023-28865

Description:
Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR15, 4.0.0 SR05, 4.1.0 SR03, and 4.2.0 SR02 fails to validate the directory contents of certain directories (e.g., ensuring the expected hash sum) during the Pre-Boot Authorization (PBA) process. This can be exploited by a physical attacker who is able to manipulate the contents of the system's hard disk.
Last updated date:
08/19/2024
Type:
exploit
Confidence:
HIGH
Date of publishing:
08/19/2024
Reference url to background

https://media.defcon.org/DEF%20CON%2032/DEF%20CON%2032%20presentations/DEF%20CON%2032%20-%20Matt%20Burch%20-%20Where%E2%80%99s%20the%20Money%20-%20Defeating%20ATM%20Disk%20Encryption-white%20paper.pdf

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy