ZeroHour

CVE-2023-23901

CVSS 3.1
6.5 medium
EPSS
<1%p38
Published
()
Modified
Description

Improper following of a certificate's chain of trust exists in SkyBridge MB-A200 firmware Ver. 01.00.05 and earlier, and SkyBridge BASIC MB-A130 firmware Ver. 1.4.1 and earlier, which may allow a remote unauthenticated attacker to eavesdrop on or alter the communication sent to the WebUI of the product.

Vendors
seiko-sol
Products
skybridge basic mb-a130 firmware, skybridge mb-a200 firmware
Weakness
CWE-295
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.