Description
The MS27102A Remote Spectrum Monitor is vulnerable to an authentication bypass that allows unauthorized users to access and manipulate its management interface. Because the device provides no mechanism to enable or configure authentication, the issue is inherent to its design rather than a deployment error.
Problem types
CWE-306 Missing authentication for critical function
Product status
All versions (custom)
All versions (custom)
All versions (custom)
All versions (custom)
Credits
Souvik Kandar
References
www.cisa.gov/news-events/ics-advisories/icsa-26-090-01