CVE-2023-3703

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Sep 3, 2023
Updated: Sep 7, 2023
CWE ID 1392

Summary

CVE-2023-3703: Proscend Advice ICR Series routers with firmware version 1.76 or below are vulnerable to unauthorized access due to the use of default credentials (CWE-1392). This vulnerability exposes the routers to potential attacks, such as unauthorized configuration changes or data theft. Attackers can easily obtain administrative access by using readily available default usernames and passwords. Users are advised to update their firmware to a version that addresses this issue and to use strong, unique credentials for all devices on their network.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share