Description
Incorrect data input validation vulnerability, which could allow an attacker with access to the network to implement fuzzing techniques that would allow him to gain knowledge about specially crafted packets that would create a DoS condition through the MMS protocol when initiating communication, achieving a complete system reboot of the device and its services.
Published: 2023-10-02
Score: 8.6 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

Vendor Solution

1.0.4.0 version (released on 30-09-2021) and later.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-44401 Incorrect data input validation vulnerability, which could allow an attacker with access to the network to implement fuzzing techniques that would allow him to gain knowledge about specially crafted packets that would create a DoS condition through the MMS protocol when initiating communication, achieving a complete system reboot of the device and its services.
History

Fri, 20 Sep 2024 17:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Subscriptions

Ingeteam Ingepac Da3451 Ingepac Da3451 Firmware Ingepac Ef Md Ingepac Ef Md Firmware Ingepac Fc5066 Ingepac Fc5066 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: INCIBE

Published:

Updated: 2024-09-20T16:49:01.471Z

Reserved: 2023-07-19T11:41:48.222Z

Link: CVE-2023-3768

cve-icon Vulnrichment

Updated: 2024-08-02T07:08:49.809Z

cve-icon NVD

Status : Modified

Published: 2023-10-02T11:15:50.213

Modified: 2024-11-21T08:18:01.240

Link: CVE-2023-3768

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses