CVE-2023-25187
Summary
| CVE | CVE-2023-25187 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-06-16 20:15:00 UTC |
| Updated | 2023-06-29 19:17:00 UTC |
| Description | An issue was discovered on NOKIA Airscale ASIKA Single RAN devices before 21B. Nokia Single RAN commissioning procedures do not change (factory-time installed) default SSH public/private key values that are specific to a network operator. As a result, the CSP internal BTS network SSH server (disabled by default) continues to apply the default SSH public/private key values. These keys don't give access to BTS, because service user authentication is username/password-based on top of SSH. Nokia factory installed default SSH keys are meant to be changed from operator-specific values during the BTS deployment commissioning phase. However, before the 21B release, BTS commissioning manuals did not provide instructions to change default SSH keys (to BTS operator-specific values). This leads to a possibility for malicious operations staff (inside a CSP network) to attempt MITM exploitation of BTS service user access, during the moments that SSH is enabled for Nokia service personnel to perform troubleshooting activities. |
Risk And Classification
Problem Types: CWE-798
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Nokia | Asika Airscale | - | All | All | All |
| Operating System | Nokia | Asika Airscale Firmware | 19b | All | All | All |
| Operating System | Nokia | Asika Airscale Firmware | 20a | All | All | All |
| Operating System | Nokia | Asika Airscale Firmware | 20b | All | All | All |
| Operating System | Nokia | Asika Airscale Firmware | 20c | All | All | All |
| Operating System | Nokia | Asika Airscale Firmware | 21a | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| www.nokia.com/about-us/security-and-privacy/product-security-advisory/cve-2... | MISC | www.nokia.com | |
| Nokia Corporation | MISC | Nokia.com | |
| Nokia ASIKA 7.13.52 Private Key Disclosure ≈ Packet Storm | MISC | packetstormsecurity.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.