Required CVE Record Information
Description
An attacker could send an HTTP request to an Open5GS endpoint and retrieve the information stored on the device due to the lack of Authentication.
CVSS 1 Total
Score | Severity | Version | Vector String |
---|---|---|---|
6.5 | MEDIUM | 3.1 | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L |
Credits
- Pablo Valle Alvear finder
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.