Authentication bypass vulnerability in Fujitsu network devices Si-R series and SR-M series allows a network-adjacent unauthenticated attacker to obtain, change, and/or reset configuration settings of the affected products. Affected products and versions are as follows: Si-R 30B all versions, Si-R 130B all versions, Si-R 90brin all versions, Si-R570B all versions, Si-R370B all versions, Si-R220D all versions, Si-R G100 V02.54 and earlier, Si-R G200 V02.54 and earlier, Si-R G100B V04.12 and earlier, Si-R G110B V04.12 and earlier, Si-R G200B V04.12 and earlier, Si-R G210 V20.52 and earlier, Si-R G211 V20.52 and earlier, Si-R G120 V20.52 and earlier, Si-R G121 V20.52 and earlier, and SR-M 50AP1 all versions.

Project Subscriptions

Vendors Products
Fujitsu Subscribe
Si-r220d Subscribe
Si-r220d Firmware Subscribe
Si-r370b Subscribe
Si-r370b Firmware Subscribe
Si-r570b Subscribe
Si-r570b Firmware Subscribe
Si-r 130b Subscribe
Si-r 130b Firmware Subscribe
Si-r 30b Subscribe
Si-r 30b Firmware Subscribe
Si-r 90brin Subscribe
Si-r 90brin Firmware Subscribe
Si-r G100 Subscribe
Si-r G100 Firmware Subscribe
Si-r G100b Subscribe
Si-r G100b Firmware Subscribe
Si-r G110b Subscribe
Si-r G110b Firmware Subscribe
Si-r G120 Subscribe
Si-r G120 Firmware Subscribe
Si-r G121 Subscribe
Si-r G121 Firmware Subscribe
Si-r G200 Subscribe
Si-r G200 Firmware Subscribe
Si-r G200b Subscribe
Si-r G200b Firmware Subscribe
Si-r G210 Subscribe
Si-r G210 Firmware Subscribe
Si-r G211 Subscribe
Si-r G211 Firmware Subscribe
Sr-m 50ap1 Subscribe
Sr-m 50ap1 Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2023-42354 Authentication bypass vulnerability in Fujitsu network devices Si-R series and SR-M series allows a network-adjacent unauthenticated attacker to obtain, change, and/or reset configuration settings of the affected products. Affected products and versions are as follows: Si-R 30B all versions, Si-R 130B all versions, Si-R 90brin all versions, Si-R570B all versions, Si-R370B all versions, Si-R220D all versions, Si-R G100 V02.54 and earlier, Si-R G200 V02.54 and earlier, Si-R G100B V04.12 and earlier, Si-R G110B V04.12 and earlier, Si-R G200B V04.12 and earlier, Si-R G210 V20.52 and earlier, Si-R G211 V20.52 and earlier, Si-R G120 V20.52 and earlier, Si-R G121 V20.52 and earlier, and SR-M 50AP1 all versions.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Thu, 14 Nov 2024 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published:

Updated: 2024-11-14T15:00:48.965Z

Reserved: 2023-07-20T04:38:59.286Z

Link: CVE-2023-38555

cve-icon Vulnrichment

Updated: 2024-08-02T17:46:56.080Z

cve-icon NVD

Status : Modified

Published: 2023-07-26T08:15:10.317

Modified: 2024-11-21T08:13:49.227

Link: CVE-2023-38555

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses