CVE-2023-4419

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Aug 24, 2023
Updated: Aug 31, 2023
CWE ID 276

Summary

CVE-2023-4419 is a vulnerability affecting the LMS5xx series of devices. This issue arises from the use of hard-coded credentials, making it possible for unauthorized, low-skilled remote attackers to reconfigure settings or disrupt the functionality of the affected device. The hard-coded credentials serve as an easy entry point, potentially allowing attackers to gain administrative access and make unwarranted changes, posing a significant security risk. It's essential for users to update their devices with the latest firmware or apply the necessary patches as soon as possible to mitigate the danger.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share