CVE-2023-1144: Deltaww Infrasuite Device Master

High severity, CVSS 8.8. EPSS: 0.6% chance of exploitation in the next 30 days.

Delta Electronics InfraSuite Device Master versions prior to 1.0.5 contains an improper access control vulnerability in which an attacker can use the Device-Gateway service and bypass authorization, which could result in privilege escalation.

Affected products

  • Deltaww Infrasuite Device Master: before 1.0.5 (fixed in 1.0.5)

Published 2023-03-27. Last modified 2026-06-17.