Medium severity5.3NVD Advisory· Published Nov 14, 2025· Updated Jun 17, 2026
CVE-2023-7328
CVE-2023-7328
Description
Screen SFT DAB 600/C firmware versions up to and including 1.9.3 contain an improper access control on the user management API allows unauthenticated requests to retrieve structured user data, including account names and connection metadata such as client IP and timeout values.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: <=1.9.3
- cpe:2.3:o:dbbroadcast:sft_dab_600\/c_firmware:*:*:*:*:*:*:*:*Range: <=1.9.3
Patches
Vulnerability mechanics
References
5- www.exploit-db.com/exploits/51460nvdExploit
- www.zeroscience.mk/en/vulnerabilities/ZSL-2023-5776.phpnvdExploitThird Party Advisory
- packetstormsecurity.com/files/172332/nvdThird Party Advisory
- www.vulncheck.com/advisories/screen-sft-dab-600c-unauthenticated-information-disclosurenvdThird Party Advisory
- www.dbbroadcast.com/products/radio/sft-dab-series-compact-air/nvdProduct
News mentions
0No linked articles in our index yet.