CVE-2017-20223

Telesquare SKT LTE Router SDT-CS3B1 firmware version 1.2.0 contains an insecure direct object reference vulnerability that allows attackers to bypass authorization and access resources by manipulating user-supplied input parameters. Attackers can directly reference objects in the system to retrieve sensitive information and access functionalities without proper access controls.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:telesquare:sdt-cs3b1_firmware:1.2.0:*:*:*:*:*:*:*
cpe:2.3:h:telesquare:sdt-cs3b1:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-03-16 14:17

Updated : 2026-06-17 01:15


NVD link : CVE-2017-20223

Mitre link : CVE-2017-20223

CVE.ORG link : CVE-2017-20223


JSON object : View

Products Affected

telesquare

  • sdt-cs3b1
  • sdt-cs3b1_firmware
CWE
CWE-639

Authorization Bypass Through User-Controlled Key