CVE-2023-3453
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
23/08/2023
Last modified:
28/12/2023
Description
<br />
ETIC Telecom RAS versions 4.7.0 and prior the web management portal authentication disabled by default. This could allow an attacker with adjacent network access to alter the configuration of the device or cause a denial-of-service condition.<br />
<br />
Impact
Base Score 3.x
8.10
Severity 3.x
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:o:etictelecom:remote_access_server_firmware:*:*:*:*:*:*:*:* | 4.7.0 (including) | |
cpe:2.3:h:etictelecom:ras-c-100-lw:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:etictelecom:ras-e-100:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:etictelecom:ras-e-220:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:etictelecom:ras-e-400:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:etictelecom:ras-ec-220-lw:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:etictelecom:ras-ec-400-lw:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:etictelecom:ras-ec-480-lw:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:etictelecom:ras-ecw-220-lw:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:etictelecom:ras-ecw-400-lw:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:etictelecom:ras-ew-100:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:etictelecom:ras-ew-220:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:etictelecom:ras-ew-400:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:etictelecom:rfm-e:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page