CVE-2023-3768
Last modified
CVE-2023-3768 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. Incorrect data input validation vulnerability, which could allow an attacker with access to the network to implement fuzzing techniques that would allow him to gain knowledge about specially crafted packets that would create a DoS condition through the MMS protocol when initiating communication, achieving a complete system reboot of the device and its services.. EPSS estimates a 0.56% chance of exploitation in the next 30 days.
Description
Incorrect data input validation vulnerability, which could allow an attacker with access to the network to implement fuzzing techniques that would allow him to gain knowledge about specially crafted packets that would create a DoS condition through the MMS protocol when initiating communication, achieving a complete system reboot of the device and its services.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Ingeteam | Ingepac Da3451 Firmware | All versions |
| Ingeteam | Ingepac Ef Md Firmware | All versions |
| Ingeteam | Ingepac Fc5066 Firmware | All versions |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2023-3768?
How severe is CVE-2023-3768?
How do I fix CVE-2023-3768?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2023
- CVE-2023-37658fast-poster v2.15.0 is vulnerable to Cross Site Scripting (X…5.4
- CVE-2023-37659xalpha v0.11.4 is vulnerable to Remote Command Execution (RC…9.8
- CVE-2023-3766A vulnerability was discovered in the odoh-rs rust crate tha…5.9
- CVE-2023-3767An OS command injection vulnerability has been found on Easy…9.8
- CVE-2023-37677Pligg CMS v2.0.2 (also known as Kliqqi) was discovered to co…9.8
- CVE-2023-37679A remote command execution (RCE) vulnerability in NextGen Mi…9.8
- CVE-2023-37682Judging Management System v1.0 was discovered to contain a S…9.8
- CVE-2023-37683Online Nurse Hiring System v1.0 was discovered to contain a …4.8
- CVE-2023-37684Online Nurse Hiring System v1.0 was discovered to contain a …4.8
- CVE-2023-37685Online Nurse Hiring System v1.0 was discovered to contain a …4.8
- CVE-2023-37686Online Nurse Hiring System v1.0 was discovered to contain a …4.8
- CVE-2023-37687Online Nurse Hiring System v1.0 was discovered to contain a …7.2
Are you affected by CVE-2023-3768?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
