PT-2026-45161 · Open5Gs · Open5Gs

·

CVE-2026-10157

·

Published

2026-04-10

·

Updated

2026-05-31

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Open5GS versions prior to 2.7.7
Description Improper authentication exists in the NGAP PathSwitchRequest Message Handler component within the file src/amf/ngap-handler.c. This issue allows a remote attacker to manipulate the system due to a failure in the authentication process.
Recommendations Apply patch a188e36b1741ffc2252133f59b1bda4f14d3cb5c to resolve the issue.

Exploit

Fix

Improperly Implemented Security Check for Standard

Improper Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-07570
CVE-2026-10157

Affected Products

Open5Gs