Required CVE Record Information
Description
ETIC Telecom RAS versions 4.7.0 and prior the web management portal authentication disabled by default. This could allow an attacker with adjacent network access to alter the configuration of the device or cause a denial-of-service condition.
CVSS 1 Total
Score | Severity | Version | Vector String |
---|---|---|---|
7.1 | HIGH | 3.1 | CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:L |
Credits
- Haviv Vaizman of OTORIO finder
- Hay Mizrachi of OTORIO finder
- Alik Koldobsky of OTORIO finder
- Ofir Manzur of OTORIO finder
- Nikolay Sokolik of OTORIO finder
References 1 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.