CVE-2023-23770: Critical severity motorola mbts site controller vulnerability
Published Aug 29, 2023
·Updated
Motorola MBTS Site Controller accepts hard-coded backdoor password. The Motorola MBTS Site Controller Man Machine Interface (MMI), allowing for service technicians to diagnose and configure the device, accepts a hard-coded backdoor password that cannot be changed or disabled.
Affected Software
2 affected components
Motorola Mbts Site Controller Firmware=r05.32.58
Motorola MBTS Site Controller
Event History
Aug 29, 2023
CVE Published
via MITRE·08:47 AM
Data Sourced
via MITRE·08:47 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2023-23770.
2
What is the severity of CVE-2023-23770?
The severity of CVE-2023-23770 is critical with a score of 9.8.
3
What is the affected software for CVE-2023-23770?
The affected software for CVE-2023-23770 is Motorola MBTS Site Controller firmware version r05.32.58.
4
What is the CWE ID for CVE-2023-23770?
The CWE ID for CVE-2023-23770 is CWE-798.
5
How can I mitigate CVE-2023-23770?
To mitigate CVE-2023-23770, it is recommended to contact the vendor for a firmware update that addresses the hard-coded backdoor password issue.