{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-08-01T20:30:16.326","vulnerabilities":[{"cve":{"id":"CVE-2023-31176","sourceIdentifier":"security@selinc.com","published":"2023-11-30T17:15:08.520","lastModified":"2026-06-17T05:56:28.350","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"An Insufficient Entropy vulnerability in the Schweitzer Engineering Laboratories SEL-451 could allow an unauthenticated remote attacker to brute-force session tokens and bypass authentication. \n\n\nSee product Instruction Manual Appendix A dated 20230830 for more details.\n\n\n\n"},{"lang":"es","value":"Una vulnerabilidad de entropía insuficiente en Schweitzer Engineering Laboratories SEL-451 podría permitir que un atacante remoto no autenticado utilice tokens de sesión de fuerza bruta y eluda la autenticación. Consulte el Apéndice A del Manual de instrucciones del producto con fecha 20230830 para obtener más detalles."}],"affected":[{"source":"security@selinc.com","affectedData":[{"vendor":"Schweitzer Engineering Laboratories","product":"SEL-451","defaultStatus":"unaffected","versions":[{"version":"R315-V0","lessThan":"R315-V4","versionType":"custom","status":"affected"},{"version":"R316-V0","lessThan":"R316-V4","versionType":"custom","status":"affected"},{"version":"R317-V0","lessThan":"R317-V4","versionType":"custom","status":"affected"},{"version":"R318-V0","lessThan":"R318-V5","versionType":"custom","status":"affected"},{"version":"R320-V0","lessThan":"R320-V3","versionType":"custom","status":"affected"},{"version":"R321-V0","lessThan":"R321-V3","versionType":"custom","status":"affected"},{"version":"R322-V0","lessThan":"R322-V3","versionType":"custom","status":"affected"},{"version":"R323-V0","lessThan":"R323-V5","versionType":"custom","status":"affected"},{"version":"R324-V0","lessThan":"R324-V4","versionType":"custom","status":"affected"},{"version":"R325-V0","lessThan":"R325-V3","versionType":"custom","status":"affected"},{"version":"R326-V0","lessThan":"R326-V1","versionType":"custom","status":"affected"},{"version":"R327-V0","lessThan":"R327-V1","versionType":"custom","status":"affected"}]}]},{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","affectedData":[{"vendor":"selinc","product":"sel-451_firmware","defaultStatus":"unknown","cpes":["cpe:2.3:o:selinc:sel-451_firmware:*:*:*:*:*:*:*:*"],"versions":[{"version":"R315-V0","lessThan":"R315-V4","versionType":"custom","status":"affected"},{"version":"R316-V0","lessThan":"R316-V4","versionType":"custom","status":"affected"},{"version":"R317-V0","lessThan":"R317-V4","versionType":"custom","status":"affected"},{"version":"R318-V0","lessThan":"R318-V5","versionType":"custom","status":"affected"},{"version":"R320-V0","lessThan":"R320-V3","versionType":"custom","status":"affected"},{"version":"R321-V0","lessThan":"R321-V3","versionType":"custom","status":"affected"},{"version":"R322-V0","lessThan":"R322-V3","versionType":"custom","status":"affected"},{"version":"R323-V0","lessThan":"R323-V5","versionType":"custom","status":"affected"},{"version":"R324-V0","lessThan":"R324-V4","versionType":"custom","status":"affected"},{"version":"R325-V0","lessThan":"R325-V3","versionType":"custom","status":"affected"},{"version":"R326-V0","lessThan":"R326-V1","versionType":"custom","status":"affected"},{"version":"R327-V0","lessThan":"R327-V1","versionType":"custom","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"security@selinc.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","baseScore":7.5,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"HIGH","availabilityImpact":"NONE"},"exploitabilityScore":3.9,"impactScore":3.6},{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","baseScore":9.8,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":3.9,"impactScore":5.9}],"ssvcV203":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","ssvcData":{"timestamp":"2024-10-15T17:28:37.960490Z","id":"CVE-2023-31176","options":[{"exploitation":"none"},{"automatable":"yes"},{"technicalImpact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}]},"weaknesses":[{"source":"security@selinc.com","type":"Secondary","description":[{"lang":"en","value":"CWE-331"}]},{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-331"}]}],"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:selinc:sel-451_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"r315-v0","versionEndExcluding":"r315-v4","matchCriteriaId":"567CA071-8A2D-40DD-A3DF-0FD73739476F"},{"vulnerable":true,"criteria":"cpe:2.3:o:selinc:sel-451_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"r316-v0","versionEndExcluding":"r316-v4","matchCriteriaId":"EE50B5EC-2A69-4EA9-A16D-5A0BF38D2861"},{"vulnerable":true,"criteria":"cpe:2.3:o:selinc:sel-451_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"r317-v0","versionEndExcluding":"r317-v4","matchCriteriaId":"D9D6B6F3-8D35-46B5-879C-26F22ED4AA2D"},{"vulnerable":true,"criteria":"cpe:2.3:o:selinc:sel-451_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"r318-v0","versionEndExcluding":"r318-v5","matchCriteriaId":"5DC6FE46-8B20-47D6-8A88-1708978C49D1"},{"vulnerable":true,"criteria":"cpe:2.3:o:selinc:sel-451_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"r320-v0","versionEndExcluding":"r320-v3","matchCriteriaId":"9E3E5B0A-E01A-4A5B-894C-DF83E4E5B23F"},{"vulnerable":true,"criteria":"cpe:2.3:o:selinc:sel-451_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"r321-v0","versionEndExcluding":"r321-v3","matchCriteriaId":"7505AF51-82AF-4145-B794-CA0B5048DD7E"},{"vulnerable":true,"criteria":"cpe:2.3:o:selinc:sel-451_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"r322-v0","versionEndExcluding":"r322-v3","matchCriteriaId":"6F092F10-4440-4FC4-8B0B-44B86F1742B8"},{"vulnerable":true,"criteria":"cpe:2.3:o:selinc:sel-451_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"r323-v0","versionEndExcluding":"r323-v5","matchCriteriaId":"B80DF635-298D-45B6-A5F7-71386587E6A8"},{"vulnerable":true,"criteria":"cpe:2.3:o:selinc:sel-451_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"r324-v0","versionEndExcluding":"r324-v4","matchCriteriaId":"3E9473AE-F0E1-49A2-BD2E-CEAC21B5CF9C"},{"vulnerable":true,"criteria":"cpe:2.3:o:selinc:sel-451_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"r325-v0","versionEndExcluding":"r325-v3","matchCriteriaId":"77E42746-C95B-476B-8734-0DE9FA1C611C"},{"vulnerable":true,"criteria":"cpe:2.3:o:selinc:sel-451_firmware:r326-v0:*:*:*:*:*:*:*","matchCriteriaId":"8EF1EF31-FFF7-4A3B-8A9F-2BD4CC355CD2"},{"vulnerable":true,"criteria":"cpe:2.3:o:selinc:sel-451_firmware:r327-v0:*:*:*:*:*:*:*","matchCriteriaId":"B9C7EDD0-52E2-45E7-975C-B194F2902F5D"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:selinc:sel-451:-:*:*:*:*:*:*:*","matchCriteriaId":"9BBDB9B5-DAF0-4A78-88E3-1EB6486F8A13"}]}]}],"references":[{"url":"https://selinc.com/support/security-notifications/external-reports/","source":"security@selinc.com","tags":["Vendor Advisory"]},{"url":"https://www.nozominetworks.com/blog/","source":"security@selinc.com","tags":["Third Party Advisory"]},{"url":"https://selinc.com/support/security-notifications/external-reports/","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://www.nozominetworks.com/blog/","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"]}]}}]}