CVE-2023-41350

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Nov 3, 2023
Updated: Nov 13, 2023
CWE ID 307

Summary

CVE-2023-41350 is a vulnerability affecting the Chunghwa Telecom NOKIA G-040W-Q device. This issue involves insufficient security measures against multiple failed authentication attempts, allowing an unauthenticated remote attacker to execute a crafted Javascript. The exposure of the captcha in the page results from this vulnerability, making it easier for bots to bypass the captcha check and increasing the susceptibility to brute force attacks. The vulnerability poses a significant risk to the security of the affected device and requires immediate attention and remediation.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share