// For flags

CVE-2023-5627

Incorrect Implementation of Authentication Algorithm Vulnerability

Severity Score

7.5
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

Attend
*SSVC
Descriptions

A vulnerability has been identified in NPort 6000 Series, making the authentication mechanism vulnerable. This vulnerability arises from the incorrect implementation of sensitive information protection, potentially allowing malicious users to gain unauthorized access to the web service.

Se ha identificado una vulnerabilidad en Series NPort 6000 que hace vulnerable el mecanismo de autenticación. Esta vulnerabilidad surge de la implementación incorrecta de la protección de información confidencial, lo que potencialmente permite que usuarios malintencionados obtengan acceso no autorizado al servicio web.

*Credits: Pasha Kravtsov and Nathan Nye from True Anomaly (trueanomaly.space)
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:Attend
Exploitation
None
Automatable
Yes
Tech. Impact
Partial
* Organization's Worst-case Scenario
Timeline
  • 2023-10-18 CVE Reserved
  • 2023-11-01 CVE Published
  • 2024-09-05 CVE Updated
  • 2024-11-07 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-257: Storing Passwords in a Recoverable Format
  • CWE-287: Improper Authentication
  • CWE-303: Incorrect Implementation of Authentication Algorithm
  • CWE-327: Use of a Broken or Risky Cryptographic Algorithm
CAPEC
  • CAPEC-114: Authentication Abuse
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Moxa
Search vendor "Moxa"
Nport 6150-t Firmware
Search vendor "Moxa" for product "Nport 6150-t Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6150-t Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6150-t
Search vendor "Moxa" for product "Nport 6150-t"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6150 Firmware
Search vendor "Moxa" for product "Nport 6150 Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6150 Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6150
Search vendor "Moxa" for product "Nport 6150"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6250-m-sc-t Firmware
Search vendor "Moxa" for product "Nport 6250-m-sc-t Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6250-m-sc-t Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6250-m-sc-t
Search vendor "Moxa" for product "Nport 6250-m-sc-t"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6250-m-sc Firmware
Search vendor "Moxa" for product "Nport 6250-m-sc Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6250-m-sc Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6250-m-sc
Search vendor "Moxa" for product "Nport 6250-m-sc"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6250-s-sc-t Firmware
Search vendor "Moxa" for product "Nport 6250-s-sc-t Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6250-s-sc-t Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6250-s-sc-t
Search vendor "Moxa" for product "Nport 6250-s-sc-t"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6250-s-sc Firmware
Search vendor "Moxa" for product "Nport 6250-s-sc Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6250-s-sc Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6250-s-sc
Search vendor "Moxa" for product "Nport 6250-s-sc"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6250-t Firmware
Search vendor "Moxa" for product "Nport 6250-t Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6250-t Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6250-t
Search vendor "Moxa" for product "Nport 6250-t"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6250 Firmware
Search vendor "Moxa" for product "Nport 6250 Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6250 Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6250
Search vendor "Moxa" for product "Nport 6250"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6450-t Firmware
Search vendor "Moxa" for product "Nport 6450-t Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6450-t Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6450-t
Search vendor "Moxa" for product "Nport 6450-t"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6450 Firmware
Search vendor "Moxa" for product "Nport 6450 Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6450 Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6450
Search vendor "Moxa" for product "Nport 6450"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6610-16-48v Firmware
Search vendor "Moxa" for product "Nport 6610-16-48v Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6610-16-48v Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6610-16-48v
Search vendor "Moxa" for product "Nport 6610-16-48v"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6610-16 Firmware
Search vendor "Moxa" for product "Nport 6610-16 Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6610-16 Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6610-16
Search vendor "Moxa" for product "Nport 6610-16"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6610-32-48v Firmware
Search vendor "Moxa" for product "Nport 6610-32-48v Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6610-32-48v Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6610-32-48v
Search vendor "Moxa" for product "Nport 6610-32-48v"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6610-32 Firmware
Search vendor "Moxa" for product "Nport 6610-32 Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6610-32 Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6610-32
Search vendor "Moxa" for product "Nport 6610-32"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6610-8-48v Firmware
Search vendor "Moxa" for product "Nport 6610-8-48v Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6610-8-48v Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6610-8-48v
Search vendor "Moxa" for product "Nport 6610-8-48v"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6610-8 Firmware
Search vendor "Moxa" for product "Nport 6610-8 Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6610-8 Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6610-8
Search vendor "Moxa" for product "Nport 6610-8"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6650-16-48v Firmware
Search vendor "Moxa" for product "Nport 6650-16-48v Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6650-16-48v Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6650-16-48v
Search vendor "Moxa" for product "Nport 6650-16-48v"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6650-16-hv-t Firmware
Search vendor "Moxa" for product "Nport 6650-16-hv-t Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6650-16-hv-t Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6650-16-hv-t
Search vendor "Moxa" for product "Nport 6650-16-hv-t"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6650-16-t Firmware
Search vendor "Moxa" for product "Nport 6650-16-t Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6650-16-t Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6650-16-t
Search vendor "Moxa" for product "Nport 6650-16-t"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6650-16 Firmware
Search vendor "Moxa" for product "Nport 6650-16 Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6650-16 Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6650-16
Search vendor "Moxa" for product "Nport 6650-16"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6650-32-48v Firmware
Search vendor "Moxa" for product "Nport 6650-32-48v Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6650-32-48v Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6650-32-48v
Search vendor "Moxa" for product "Nport 6650-32-48v"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6650-32-hv-t Firmware
Search vendor "Moxa" for product "Nport 6650-32-hv-t Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6650-32-hv-t Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6650-32-hv-t
Search vendor "Moxa" for product "Nport 6650-32-hv-t"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6650-32 Firmware
Search vendor "Moxa" for product "Nport 6650-32 Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6650-32 Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6650-32
Search vendor "Moxa" for product "Nport 6650-32"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6650-8-48v Firmware
Search vendor "Moxa" for product "Nport 6650-8-48v Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6650-8-48v Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6650-8-48v
Search vendor "Moxa" for product "Nport 6650-8-48v"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6650-8-hv-t Firmware
Search vendor "Moxa" for product "Nport 6650-8-hv-t Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6650-8-hv-t Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6650-8-hv-t
Search vendor "Moxa" for product "Nport 6650-8-hv-t"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6650-8-t Firmware
Search vendor "Moxa" for product "Nport 6650-8-t Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6650-8-t Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6650-8-t
Search vendor "Moxa" for product "Nport 6650-8-t"
--
Safe
Moxa
Search vendor "Moxa"
Nport 6650-8 Firmware
Search vendor "Moxa" for product "Nport 6650-8 Firmware"
<= 1.21
Search vendor "Moxa" for product "Nport 6650-8 Firmware" and version " <= 1.21"
-
Affected
in Moxa
Search vendor "Moxa"
Nport 6650-8
Search vendor "Moxa" for product "Nport 6650-8"
--
Safe