Vulnerability Description
JINS MEME CORE Firmware version 2.2.0 and earlier uses a hard-coded cryptographic key, which may lead to data acquired by a sensor of the affected product being decrypted by a network-adjacent attacker.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Jins | Jins Meme Firmware | < 2.3.0 |
| Jins | Jins Meme | - |
Related Weaknesses (CWE)
References
- https://jinsmeme.com/media/2023-04-fwapp2Release Notes
- https://jvn.jp/en/jp/JVN13306058/Third Party Advisory
- https://jinsmeme.com/media/2023-04-fwapp2Release Notes
- https://jvn.jp/en/jp/JVN13306058/Third Party Advisory
FAQ
What is CVE-2023-27921?
CVE-2023-27921 is a vulnerability with a CVSS score of 6.5 (MEDIUM). JINS MEME CORE Firmware version 2.2.0 and earlier uses a hard-coded cryptographic key, which may lead to data acquired by a sensor of the affected product being decrypted by a network-adjacent attacke...
How severe is CVE-2023-27921?
CVE-2023-27921 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-27921?
Check the references section above for vendor advisories and patch information. Affected products include: Jins Jins Meme Firmware, Jins Jins Meme.