CVE-2023-25914: Danfoss Ak-Sm 800a Firmware

High severity, CVSS 8.8. EPSS: 0.8% chance of exploitation in the next 30 days.

Due to improper restriction, authenticated attackers could retrieve and read system files of the underlying server through the XML interface. The information that can be read can lead to a full system compromise.

Affected products

  • Danfoss Ak-Sm 800a Firmware: up to and including 3.3

Published 2023-08-21. Last modified 2026-06-17.