Incorrect Implementation of Authentication Algorithm Vulnerability
CVE-2023-5627
7.5HIGH
Summary
A vulnerability has been discovered in Moxa's NPort 6000 Series that compromises the application's authentication mechanism. This issue stems from an improper implementation of sensitive information protection protocols. As a result, this flaw may allow unauthorized users to access web services without proper authentication controls, posing a risk to data integrity and confidentiality.
Affected Version(s)
NPort 6000 Series 1.0 <= 1.21
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Pasha Kravtsov and Nathan Nye from True Anomaly (trueanomaly.space)