HIGH · 7.5

CVE-2023-25184

Use of weak credentials exists in Seiko Solutions SkyBridge and SkySpider series, which may allow a remote unauthenticated attacker to decrypt password for the WebUI of the product. Affected products ...

Vulnerability Description

Use of weak credentials exists in Seiko Solutions SkyBridge and SkySpider series, which may allow a remote unauthenticated attacker to decrypt password for the WebUI of the product. Affected products and versions are as follows: SkyBridge MB-A200 firmware Ver. 01.00.05 and earlier, SkyBridge BASIC MB-A130 firmware Ver. 1.4.1 and earlier, and SkySpider MB-R210 firmware Ver. 1.01.00 and earlier.

CVSS Score

7.5

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
Seiko-SolSkybridge Basic Mb-A130 Firmware<= 1.4.1
Seiko-SolSkybridge Basic Mb-A130-
Seiko-SolSkybridge Mb-A200 Firmware<= 01.00.05
Seiko-SolSkybridge Mb-A200-
Seiko-SolSkyspider Mb-R210 Firmware<= 1.01.00
Seiko-SolSkyspider Mb-R210-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2023-25184?

CVE-2023-25184 is a vulnerability with a CVSS score of 7.5 (HIGH). Use of weak credentials exists in Seiko Solutions SkyBridge and SkySpider series, which may allow a remote unauthenticated attacker to decrypt password for the WebUI of the product. Affected products ...

How severe is CVE-2023-25184?

CVE-2023-25184 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2023-25184?

Check the references section above for vendor advisories and patch information. Affected products include: Seiko-Sol Skybridge Basic Mb-A130 Firmware, Seiko-Sol Skybridge Basic Mb-A130, Seiko-Sol Skybridge Mb-A200 Firmware, Seiko-Sol Skybridge Mb-A200, Seiko-Sol Skyspider Mb-R210 Firmware.