Known Vulnerabilities for products from Open5gs

Listed below are 4 of the newest known vulnerabilities associated with the vendor "Open5gs".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-4988 A security flaw has been discovered in Open5GS 2.7.6. This issue affects the function smf_gx_cca_cb/smf_gy_cca_cb/smf_s6b of ... Not Provided 2026-03-27 2026-03-30
CVE-2021-41794 ogs_fqdn_parse in Open5GS 1.0.0 through 2.3.3 inappropriately trusts a client-supplied length value, leading to a buffer over... 7.5 - HIGH 2021-10-07 2021-10-15
CVE-2021-28122 A request-validation issue was discovered in Open5GS 2.1.3 through 2.2.x before 2.2.1. The WebUI component allows an unauthen... 9.8 - CRITICAL 2021-03-10 2022-07-12
CVE-2021-25863 Open5GS 2.1.3 listens on 0.0.0.0:3000 and has a default password of 1423 for the admin account. 8.8 - HIGH 2021-01-26 2023-08-08

Known software with vulnerabilities from Open5gs

Type Vendor Product Version
ApplicationOpen5gsOpen5gs0.1.0