Medium severity4.3NVD Advisory· Published Jun 23, 2025· Updated Jun 17, 2026
CVE-2023-47298
CVE-2023-47298
Description
An issue in NCR Terminal Handler 1.5.1 allows a low-level privileged authenticated attacker to query the SOAP API endpoint to obtain information about all of the users of the application including their usernames, roles, security groups and account statuses.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2(expand)+ 1 more
- (no CPE)
- (no CPE)range: <1.5.1
Patches
Vulnerability mechanics
References
2- github.com/pwahba/cve-research/blob/main/CVE-2023-47298/CVE-2023-47298.mdnvdThird Party Advisory
- drive.google.com/file/d/1-BDd0ycuYhuxo-lg4th-Cswimoqqzkot/viewnvdPermissions Required
News mentions
0No linked articles in our index yet.