CVE-2023-41350 - CVE House
Back to Database
Status published High CVE-2023-41350

Chunghwa Telecom NOKIA G-040W-Q - Excessive Authentication Attempts

Vulnerability Description

Chunghwa Telecom NOKIA G-040W-Q has a vulnerability of insufficient measures to prevent multiple failed authentication attempts. An unauthenticated remote attacker can execute a crafted Javascript to expose captcha in page, making it very easy for bots to bypass the captcha check and more susceptible to brute force attacks.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-41350

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Chunghwa Telecom

View all reports →

Affected Software

NOKIA G-040W-Q
Vulnerable Versions:
G040WQR201207

Timeline

Official Publish: November 3rd, 2023
Last Modified: September 6th, 2024
Added to House: July 22nd, 2026

CVSS Vectors

V3: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Weaknesses (CWE)