PT-2024-15061 · Nokia · Nokia Sr Os

Alessandro Casale

+2

·

Published

2024-10-17

·

Updated

2024-11-05

·

CVE-2023-6728

CVSS v3.1

3.3

Low

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Nokia SR OS (affected versions not specified)
Description The Nokia SR OS bof.cfg file encryption is vulnerable to a brute force attack, allowing an attacker in possession of the encrypted file to decrypt it and obtain the BOF configuration content. This weakness can lead to sensitive data exposure.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Inadequate Encryption Strength

Weakness Enumeration

Related Identifiers

CVE-2023-6728

Affected Products

Nokia Sr Os