VYPR
Critical severity10.0NVD Advisory· Published Aug 7, 2017· Updated May 13, 2026

CVE-2017-7928

CVE-2017-7928

Description

An Improper Access Control issue was discovered in Schweitzer Engineering Laboratories (SEL) SEL-3620 and SEL-3622 Security Gateway Versions R202 and, R203, R203-V1, R203-V2 and, R204, R204-V1. The device does not properly enforce access control while configured for NAT port forwarding, which may allow for unauthorized communications to downstream devices.

Affected products

12
  • cpe:2.3:o:selinc:sel-3620_firmware:r202:*:*:*:*:*:*:*+ 5 more
    • cpe:2.3:o:selinc:sel-3620_firmware:r202:*:*:*:*:*:*:*
    • cpe:2.3:o:selinc:sel-3620_firmware:r203:*:*:*:*:*:*:*
    • cpe:2.3:o:selinc:sel-3620_firmware:r203-v:*:*:*:*:*:*:*
    • cpe:2.3:o:selinc:sel-3620_firmware:r203-v1:*:*:*:*:*:*:*
    • cpe:2.3:o:selinc:sel-3620_firmware:r204:*:*:*:*:*:*:*
    • cpe:2.3:o:selinc:sel-3620_firmware:r204-v1:*:*:*:*:*:*:*
  • cpe:2.3:o:selinc:sel-3622_firmware:r202:*:*:*:*:*:*:*+ 5 more
    • cpe:2.3:o:selinc:sel-3622_firmware:r202:*:*:*:*:*:*:*
    • cpe:2.3:o:selinc:sel-3622_firmware:r203:*:*:*:*:*:*:*
    • cpe:2.3:o:selinc:sel-3622_firmware:r203-v:*:*:*:*:*:*:*
    • cpe:2.3:o:selinc:sel-3622_firmware:r203-v1:*:*:*:*:*:*:*
    • cpe:2.3:o:selinc:sel-3622_firmware:r204:*:*:*:*:*:*:*
    • cpe:2.3:o:selinc:sel-3622_firmware:r204-v1:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.