HIGH · 7.5

CVE-2023-36144

An authentication bypass in Intelbras Switch SG 2404 MR in firmware 1.00.54 allows an unauthenticated attacker to download the backup file of the device, exposing critical information about the device...

Vulnerability Description

An authentication bypass in Intelbras Switch SG 2404 MR in firmware 1.00.54 allows an unauthenticated attacker to download the backup file of the device, exposing critical information about the device configuration.

CVSS Score

7.5

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
IntelbrasSg 2404 Mr Firmware1.00.54
IntelbrasSg 2404 Mr-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2023-36144?

CVE-2023-36144 is a vulnerability with a CVSS score of 7.5 (HIGH). An authentication bypass in Intelbras Switch SG 2404 MR in firmware 1.00.54 allows an unauthenticated attacker to download the backup file of the device, exposing critical information about the device...

How severe is CVE-2023-36144?

CVE-2023-36144 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2023-36144?

Check the references section above for vendor advisories and patch information. Affected products include: Intelbras Sg 2404 Mr Firmware, Intelbras Sg 2404 Mr.