PT-2026-21753 · Binardat · 10G08-0800Gsm Network Switch
Kazuma Matsumoto
·
Published
2026-02-24
·
Updated
2026-03-01
·
CVE-2026-27515
CVSS v3.1
9.1
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Binardat 10G08-0800GSM network switch firmware versions prior to V300SP10260209
Description
The web management interface generates predictable numeric session identifiers. This predictability allows an attacker to guess valid session IDs, enabling session hijacking.
Recommendations
Update the firmware to version V300SP10260209 or later.
Fix
Use of Insufficiently Random Values
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
10G08-0800Gsm Network Switch