CVE-2023-5627
moderate-risk
Published 2023-11-01
A vulnerability has been identified in NPort 6000 Series, making the authentication mechanism vulnerable. This vulnerability arises from the incorrect implementation of sensitive information protection, potentially allowing malicious users to gain unauthorized access to the web service.
Do I need to act?
-
0.08% chance of exploitation
EPSS score — low exploit probability
-
Not on CISA KEV list
No confirmed active exploitation reported to CISA
?
Patch status unknown
Check vendor advisories for fix availability and mitigation guidance
7
CVSS 7.5/10
High
NETWORK
/ LOW complexity
Affected Products (20)
Nport 6150-T Firmware
Nport 6150 Firmware
Nport 6250-M-Sc-T Firmware
Nport 6250-M-Sc Firmware
Nport 6250-S-Sc-T Firmware
Nport 6250-S-Sc Firmware
Nport 6250-T Firmware
Nport 6250 Firmware
Nport 6450-T Firmware
Nport 6450 Firmware
Nport 6610-16-48V Firmware
Nport 6610-16 Firmware
Nport 6610-32-48V Firmware
Nport 6610-32 Firmware
Nport 6610-8-48V Firmware
Nport 6610-8 Firmware
Nport 6650-16-48V Firmware
Nport 6650-16-Hv-T Firmware
Nport 6650-16-T Firmware
Nport 6650-16 Firmware
Affected Vendors
References (2)
48
/ 100
moderate-risk
Severity
26/34 · High
Exploitability
0/34 · Minimal
Exposure
22/34 · High