Horizon Alert
Summary of the vulnerability and why it matters
A critical vulnerability has been identified in ProSoft Technology cellular gateways that allows unauthenticated attackers to bypass security measures and gain administrative control. This issue impacts the web user interface, potentially exposing device configurations and settings to unauthorized access.
- Unauthenticated access to administrative functions.
- Affects network edge devices controlling traffic.
- Confirm relevance and assess potential exposure.
Attack Path
How an attacker could exploit the issue
An attacker can remotely access the web interface of the affected cellular gateway without needing any credentials. By exploiting this authentication bypass, they can gain full administrative control over the device's configuration and settings.
- Attacker exploits a web interface.
- No authentication is required.
- Full administrative access is granted.
Live Threat
Current exploitation, exposure, and threat context
This vulnerability could allow unauthenticated attackers to bypass the web interface's authentication, granting them full administrative control over the device's configuration and settings when accessed over a network.
- Device administrative functions at risk.
- Bypass authentication via web interface.
- Complete device configuration control.
Operational Fix
Recommended remediation, mitigation, and detection steps
The ProSoft Technology ICX35-HWC cellular gateways, specifically versions 1.3 and prior, are susceptible to an authentication bypass vulnerability. This allows unauthenticated attackers to access administrative functions via the web interface, potentially leading to unauthorized configuration changes. Owners of these devices or the infrastructure teams managing them should prioritize identifying all instances, assessing their exposure, and planning remediation. Coordination with the vendor for firmware updates or implementation of mitigating controls will be crucial for secure operation.
- Own the issue: Infrastructure or platform teams.
- Verify first: Device exposure and criticality.
- Action: Plan secure remediation or vendor coordination.