VYPR
Unrated severityNVD Advisory· Published Dec 10, 2025· Updated Apr 7, 2026

Screen SFT DAB 1.9.3 Authentication Bypass via Admin Password Change

CVE-2023-53740

Description

Screen SFT DAB 1.9.3 contains an authentication bypass vulnerability that allows attackers to change the admin password without providing the current credentials. Attackers can exploit the userManager.cgx endpoint by sending a crafted JSON request with a new MD5-hashed password to directly modify the admin account.

Affected products

2
  • Range: =1.9.3
  • DB Elettronica Telecomunicazioni SpA/Screen SFT DAB Series - Compact Radio DAB Transmitterv5
    Range: 1.9.3

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

6

News mentions

0

No linked articles in our index yet.