Description
Authentication bypass vulnerability in Fujitsu network devices Si-R series and SR-M series allows a network-adjacent unauthenticated attacker to obtain, change, and/or reset configuration settings of the affected products. Affected products and versions are as follows: Si-R 30B all versions, Si-R 130B all versions, Si-R 90brin all versions, Si-R570B all versions, Si-R370B all versions, Si-R220D all versions, Si-R G100 V02.54 and earlier, Si-R G200 V02.54 and earlier, Si-R G100B V04.12 and earlier, Si-R G110B V04.12 and earlier, Si-R G200B V04.12 and earlier, Si-R G210 V20.52 and earlier, Si-R G211 V20.52 and earlier, Si-R G120 V20.52 and earlier, Si-R G121 V20.52 and earlier, and SR-M 50AP1 all versions.
Published: 2023-07-26
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-42354 Authentication bypass vulnerability in Fujitsu network devices Si-R series and SR-M series allows a network-adjacent unauthenticated attacker to obtain, change, and/or reset configuration settings of the affected products. Affected products and versions are as follows: Si-R 30B all versions, Si-R 130B all versions, Si-R 90brin all versions, Si-R570B all versions, Si-R370B all versions, Si-R220D all versions, Si-R G100 V02.54 and earlier, Si-R G200 V02.54 and earlier, Si-R G100B V04.12 and earlier, Si-R G110B V04.12 and earlier, Si-R G200B V04.12 and earlier, Si-R G210 V20.52 and earlier, Si-R G211 V20.52 and earlier, Si-R G120 V20.52 and earlier, Si-R G121 V20.52 and earlier, and SR-M 50AP1 all versions.
History

Thu, 14 Nov 2024 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

Fujitsu Si-r220d Si-r220d Firmware Si-r370b Si-r370b Firmware Si-r570b Si-r570b Firmware Si-r 130b Si-r 130b Firmware Si-r 30b Si-r 30b Firmware Si-r 90brin Si-r 90brin Firmware Si-r G100 Si-r G100 Firmware Si-r G100b Si-r G100b Firmware Si-r G110b Si-r G110b Firmware Si-r G120 Si-r G120 Firmware Si-r G121 Si-r G121 Firmware Si-r G200 Si-r G200 Firmware Si-r G200b Si-r G200b Firmware Si-r G210 Si-r G210 Firmware Si-r G211 Si-r G211 Firmware Sr-m 50ap1 Sr-m 50ap1 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published:

Updated: 2024-11-14T15:00:48.965Z

Reserved: 2023-07-20T04:38:59.286Z

Link: CVE-2023-38555

cve-icon Vulnrichment

Updated: 2024-08-02T17:46:56.080Z

cve-icon NVD

Status : Modified

Published: 2023-07-26T08:15:10.317

Modified: 2024-11-21T08:13:49.227

Link: CVE-2023-38555

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses