Description
Authentication bypass vulnerability in Fujitsu network devices Si-R series and SR-M series allows a network-adjacent unauthenticated attacker to obtain, change, and/or reset configuration settings of the affected products. Affected products and versions are as follows: Si-R 30B all versions, Si-R 130B all versions, Si-R 90brin all versions, Si-R570B all versions, Si-R370B all versions, Si-R220D all versions, Si-R G100 V02.54 and earlier, Si-R G200 V02.54 and earlier, Si-R G100B V04.12 and earlier, Si-R G110B V04.12 and earlier, Si-R G200B V04.12 and earlier, Si-R G210 V20.52 and earlier, Si-R G211 V20.52 and earlier, Si-R G120 V20.52 and earlier, Si-R G121 V20.52 and earlier, and SR-M 50AP1 all versions.
Published: 2023-07-26
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-42354 Authentication bypass vulnerability in Fujitsu network devices Si-R series and SR-M series allows a network-adjacent unauthenticated attacker to obtain, change, and/or reset configuration settings of the affected products. Affected products and versions are as follows: Si-R 30B all versions, Si-R 130B all versions, Si-R 90brin all versions, Si-R570B all versions, Si-R370B all versions, Si-R220D all versions, Si-R G100 V02.54 and earlier, Si-R G200 V02.54 and earlier, Si-R G100B V04.12 and earlier, Si-R G110B V04.12 and earlier, Si-R G200B V04.12 and earlier, Si-R G210 V20.52 and earlier, Si-R G211 V20.52 and earlier, Si-R G120 V20.52 and earlier, Si-R G121 V20.52 and earlier, and SR-M 50AP1 all versions.
History

Thu, 14 Nov 2024 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

Fujitsu Si-r220d Si-r220d Firmware Si-r370b Si-r370b Firmware Si-r570b Si-r570b Firmware Si-r 130b Si-r 130b Firmware Si-r 30b Si-r 30b Firmware Si-r 90brin Si-r 90brin Firmware Si-r G100 Si-r G100 Firmware Si-r G100b Si-r G100b Firmware Si-r G110b Si-r G110b Firmware Si-r G120 Si-r G120 Firmware Si-r G121 Si-r G121 Firmware Si-r G200 Si-r G200 Firmware Si-r G200b Si-r G200b Firmware Si-r G210 Si-r G210 Firmware Si-r G211 Si-r G211 Firmware Sr-m 50ap1 Sr-m 50ap1 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published:

Updated: 2024-11-14T15:00:48.965Z

Reserved: 2023-07-20T04:38:59.286Z

Link: CVE-2023-38555

cve-icon Vulnrichment

Updated: 2024-08-02T17:46:56.080Z

cve-icon NVD

Status : Modified

Published: 2023-07-26T08:15:10.317

Modified: 2024-11-21T08:13:49.227

Link: CVE-2023-38555

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses