Critical severity9.8NVD Advisory· Published Mar 16, 2026· Updated Apr 14, 2026
CVE-2017-20223
CVE-2017-20223
Description
Telesquare SKT LTE Router SDT-CS3B1 firmware version 1.2.0 contains an insecure direct object reference vulnerability that allows attackers to bypass authorization and access resources by manipulating user-supplied input parameters. Attackers can directly reference objects in the system to retrieve sensitive information and access functionalities without proper access controls.
Affected products
1- cpe:2.3:o:telesquare:sdt-cs3b1_firmware:1.2.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- exchange.xforce.ibmcloud.com/vulnerabilities/136993nvdThird Party Advisory
- packetstormsecurity.com/files/145551nvdThird Party Advisory
- www.exploit-db.com/exploits/43402/nvdThird Party AdvisoryVDB Entry
- www.vulncheck.com/advisories/telesquare-skt-lte-router-sdt-cs3b1-insecure-direct-object-referencenvdThird Party Advisory
- www.zeroscience.mk/en/vulnerabilities/ZSL-2017-5445.phpnvdThird Party Advisory
- cxsecurity.com/issue/WLB-2017120297nvdIssue Tracking
News mentions
0No linked articles in our index yet.