CVE-2023-3453

HIGH

ETIC Telecom RAS <4.7.0 - DoS

Title source: llm
STIX 2.1

Description

ETIC Telecom RAS versions 4.7.0 and prior the web management portal authentication disabled by default. This could allow an attacker with adjacent network access to alter the configuration of the device or cause a denial-of-service condition.

References (1)

Core 1
Core References
Patch, Third Party Advisory, US Government Resource
https://www.cisa.gov/news-events/ics-advisories/icsa-23-208-01

Scores

CVSS v3 7.1
EPSS 0.0029
EPSS Percentile 20.4%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-1188
Status published
Products (1)
etictelecom/remote_access_server_firmware < 4.7.0
Published Aug 23, 2023
Tracked Since Feb 18, 2026