Home

Description

An issue in NCR Terminal Handler v.1.5.1 allows a remote attacker to escalate privileges via a crafted POST request to the grantRolesToUsers, grantRolesToGroups, and grantRolesToOrganization SOAP API component.

PUBLISHED Reserved 2023-10-30 | Published 2025-06-23 | Updated 2025-06-24 | Assigner mitre

References

terminal.com

ncr.com

drive.google.com/...cV9MB7pRQJFY-8voxkW8ZYH/view?usp=sharing

cve.org (CVE-2023-47031)

nvd.nist.gov (CVE-2023-47031)

Download JSON