Impact
A flaw in the AMF/MME module of Open5GS allows manipulation of the function ran_ue_find_by_amf_ue_ngap_id, resulting in a failure to enforce proper authorization checks. The vulnerability is not limited to local use; attackers can trigger the exploit remotely through the exposed interface.
Affected Systems
All Open5GS releases up to and including 2.7.6 are affected. Versions newer than 2.7.6 contain the fix. The issue is tied to the file src/amf/context.c within the AMF/MME component.
Risk and Exploitability
The CVSS score of 5.3 classifies the weakness as moderate severity. EPSS information is not provided and the vulnerability is not listed in the CISA KEV catalog. The exploit is publicly available, so a remote attacker may attempt to misuse the improper authorization to violate confidentiality or integrity safeguards.
OpenCVE Enrichment