Vulnerabilidades en Open5GS
7 resultadosAnálisis Vexday
Open5GS apresenta 6 vulnerabilidades catalogadas sem nenhuma sob exploração ativa ou com severidade crítica, indicando risco moderado e gerenciável. A fraqueza predominante (CWE-300 - problemas de certificação) sugere vulnerabilidades relacionadas a validação de identidade e criptografia, áreas sensíveis em infraestrutura 5G. Não há registros de novos problemas nos últimos 90 dias, situando o risco como histórico e estável.
CVE-2022-39063—When Open5GS UPF receives a PFCP Session Establishment Request, it stores related values for building the PFCP Session Establishment ResponsEPSS 1.1%CVE-2023-23846HIGHDue to insufficient length validation in the Open5GS GTP library versions prior to versions 2.4.13 and 2.5.7, when parsing extension headersEPSS 0.8%CVE-2023-4882HIGHMultiple vulnerabilities in Open5GSEPSS 0.5%CVE-2023-4883HIGHMultiple vulnerabilities in Open5GSEPSS 0.5%CVE-2023-4884MEDIUMMultiple vulnerabilities in Open5GSEPSS 0.4%CVE-2026-15720HIGHPre-auth heap out-of-bounds read in the AMF NAS 5GS mobile-identity handlerEPSS 0.4%CVE-2023-4885MEDIUMMultiple vulnerabilities in Open5GSEPSS 0.3%