CVE-2023-5347: Unauthenticated Firmware Upgrade
An Improper Verification of Cryptographic Signature vulnerability in the update process of Korenix JetNet Series allows replacing the whole operating system including Trusted Executables. This issue affects JetNet devices older than firmware version 2024/01.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-5347?
The severity of CVE-2023-5347 is classified as high, due to its potential to allow unauthorized operating system replacement.
How do I fix CVE-2023-5347?
To fix CVE-2023-5347, update your Korenix JetNet device to the firmware version 2024/01 or later.
Which devices are affected by CVE-2023-5347?
CVE-2023-5347 affects Korenix JetNet devices running firmware versions older than 2024/01.
What type of vulnerability is CVE-2023-5347?
CVE-2023-5347 is an improper verification of cryptographic signature vulnerability.
How does CVE-2023-5347 impact security?
CVE-2023-5347 can compromise the integrity of the operating system by allowing malicious actors to replace trusted executables.