Hard-Coded Backdoor Vulnerability in Motorola MBTS Base Radio
CVE-2023-23771
8.4HIGH
Summary
The Motorola MBTS Base Radio is exposed to a significant security flaw due to the presence of a hard-coded backdoor password within its Man Machine Interface (MMI). This vulnerability allows service technicians to access and manipulate the device without proper authentication controls, leading to potential unauthorized access and manipulation of the radio system. Since this backdoor password cannot be altered or disabled, the risk of exploitation is elevated, posing serious threats to the integrity and security of the communications managed by these devices.
Affected Version(s)
MBTS Base Radio R05.x2.57
References
CVSS V3.1
Score:
8.4
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Midnight Blue