Session Management Vulnerability in Screen SFT DAB 600/C Firmware by DB Elettronica
CVE-2023-53970

8.7HIGH

Key Information:

Vendor
CVE Published:
22 December 2025

Badges

๐Ÿ‘พ Exploit Exists๐ŸŸก Public PoC

What is CVE-2023-53970?

The Screen SFT DAB 600/C Firmware 1.9.3 is affected by a session management issue that allows attackers to bypass security measures through the reuse of IP-bound session identifiers. This vulnerability can be exploited via the device management API endpoint, enabling malicious users to reset device configurations by sending specifically crafted POST requests with altered session parameters. The flaw underlines the importance of robust session management practices to safeguard against unauthorized access and configuration manipulation.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Screen SFT DAB 600/C -

Exploit Proof of Concept (PoC)

PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.

References

CVSS V4

Score:
8.7
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • ๐ŸŸก

    Public PoC available

  • ๐Ÿ‘พ

    Exploit known to exist

  • Vulnerability published

  • Vulnerability Reserved

Credit

LiquidWorm as Gjoko Krstic of Zero Science Lab
.