CVE-2023-50920
Estado: ModificadaMedia (5.5)—
An issue was discovered on GL.iNet devices before version 4.5.0. They assign the same session ID after each user reboot, allowing attackers to share session identifiers between different sessions and bypass authentication or access control measures. Attackers can impersonate legitimate users or perform unauthorized actions. This affects A1300 4.4.6, AX1800 4.4.6, AXT1800 4.4.6, MT3000 4.4.6, MT2500 4.4.6, MT6000 4.5.0, MT1300 4.3.7, MT300N-V2 4.3.7, AR750S 4.3.7, AR750 4.3.7, AR300M 4.3.7, and B1300 4.3.7.
CVSS
- Versión: 3.1
- Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
- Puntuación base: 5.5
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 0.20%
- Percentil entre todas las CVEs puntuadas: 8
- Fecha de la puntuación: 5/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (12)
Gl-inet — Gl-a1300 FirmwareGl-inet — Gl-ar300m FirmwareGl-inet — Gl-ar750 FirmwareGl-inet — Gl-ar750s FirmwareGl-inet — Gl-ax1800 FirmwareGl-inet — Gl-axt1800 FirmwareGl-inet — Gl-b1300 FirmwareGl-inet — Gl-mt1300 FirmwareGl-inet — Gl-mt2500 FirmwareGl-inet — Gl-mt3000 FirmwareGl-inet — Gl-mt300n-v2 FirmwareGl-inet — Gl-mt6000 Firmware
CWE
- CWE-384
- CWE-384
Referencias
JSON original (NVD)
Mostrar
{
"id": "CVE-2023-50920",
"cveTags": [],
"metrics": {
"ssvcV203": [
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"ssvcData": {
"id": "CVE-2023-50920",
"role": "CISA Coordinator",
"options": [
{
"exploitation": "poc"
},
{
"automatable": "no"
},
{
"technicalImpact": "partial"
}
],
"version": "2.0.3",
"timestamp": "2024-01-16T15:48:58.623636Z"
}
}
],
"cvssMetricV31": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.1",
"baseScore": 5.5,
"attackVector": "LOCAL",
"baseSeverity": "MEDIUM",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N",
"integrityImpact": "HIGH",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"availabilityImpact": "NONE",
"privilegesRequired": "LOW",
"confidentialityImpact": "NONE"
},
"impactScore": 3.6,
"exploitabilityScore": 1.8
},
{
"type": "Secondary",
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.1",
"baseScore": 5.5,
"attackVector": "LOCAL",
"baseSeverity": "MEDIUM",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N",
"integrityImpact": "HIGH",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"availabilityImpact": "NONE",
"privilegesRequired": "LOW",
"confidentialityImpact": "NONE"
},
"impactScore": 3.6,
"exploitabilityScore": 1.8
}
]
},
"affected": [
{
"source": "cve@mitre.org",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
},
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"affectedData": [
{
"cpes": [
"cpe:2.3:h:gl.inet:A1300:-:*:*:*:*:*:*:*"
],
"vendor": "gl.inet",
"product": "A1300",
"versions": [
{
"status": "affected",
"version": "4.4.6"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:h:gl.inet:AX1800:-:*:*:*:*:*:*:*"
],
"vendor": "gl.inet",
"product": "AX1800",
"versions": [
{
"status": "affected",
"version": "4.4.6"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:h:gl.inet:AXT1800:-:*:*:*:*:*:*:*"
],
"vendor": "gl.inet",
"product": "AXT1800",
"versions": [
{
"status": "affected",
"version": "4.4.6"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:h:gl.inet:MT3000:-:*:*:*:*:*:*:*"
],
"vendor": "gl.inet",
"product": "MT3000",
"versions": [
{
"status": "affected",
"version": "4.4.6"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:h:gl.inet:MT2500:-:*:*:*:*:*:*:*"
],
"vendor": "gl.inet",
"product": "MT2500",
"versions": [
{
"status": "affected",
"version": "4.4.6"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:h:gl.inet:MT6000:-:*:*:*:*:*:*:*"
],
"vendor": "gl.inet",
"product": "MT6000",
"versions": [
{
"status": "affected",
"version": "4.5.0"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:h:gl.inet:MT1300:-:*:*:*:*:*:*:*"
],
"vendor": "gl.inet",
"product": "MT1300",
"versions": [
{
"status": "affected",
"version": "4.3.7"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:h:gl.inet:MT300N_V2:-:*:*:*:*:*:*:*"
],
"vendor": "gl.inet",
"product": "MT300N_V2",
"versions": [
{
"status": "affected",
"version": "4.3.7"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:h:gl.inet:AR750S:-:*:*:*:*:*:*:*"
],
"vendor": "gl.inet",
"product": "AR750S",
"versions": [
{
"status": "affected",
"version": "4.3.7"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:h:gl.inet:AR750:-:*:*:*:*:*:*:*"
],
"vendor": "gl.inet",
"product": "AR750",
"versions": [
{
"status": "affected",
"version": "4.3.7"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:h:gl.inet:AR300M:-:*:*:*:*:*:*:*"
],
"vendor": "gl.inet",
"product": "AR300M",
"versions": [
{
"status": "affected",
"version": "4.3.7"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:h:gl.inet:B1300:-:*:*:*:*:*:*:*"
],
"vendor": "gl.inet",
"product": "B1300",
"versions": [
{
"status": "affected",
"version": "4.3.7"
}
],
"defaultStatus": "unknown"
}
]
}
],
"published": "2024-01-12T08:15:43.590",
"references": [
{
"url": "https://github.com/gl-inet/CVE-issues/blob/main/4.0.0/Authentication-bypass-seesion-ID.md",
"tags": [
"Exploit",
"Issue Tracking",
"Vendor Advisory"
],
"source": "cve@mitre.org"
},
{
"url": "https://github.com/gl-inet/CVE-issues/blob/main/4.0.0/Authentication-bypass-seesion-ID.md",
"tags": [
"Exploit",
"Issue Tracking",
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "CWE-384"
}
]
},
{
"type": "Secondary",
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"description": [
{
"lang": "en",
"value": "CWE-384"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "An issue was discovered on GL.iNet devices before version 4.5.0. They assign the same session ID after each user reboot, allowing attackers to share session identifiers between different sessions and bypass authentication or access control measures. Attackers can impersonate legitimate users or perform unauthorized actions. This affects A1300 4.4.6, AX1800 4.4.6, AXT1800 4.4.6, MT3000 4.4.6, MT2500 4.4.6, MT6000 4.5.0, MT1300 4.3.7, MT300N-V2 4.3.7, AR750S 4.3.7, AR750 4.3.7, AR300M 4.3.7, and B1300 4.3.7."
},
{
"lang": "es",
"value": "Se descubrió un problema en dispositivos GL.iNet anteriores a la versión 4.5.0. Asignan el mismo ID de sesión después de reiniciar cada usuario, lo que permite a los atacantes compartir identificadores de sesión entre diferentes sesiones y omitir las medidas de autenticación o control de acceso. Los atacantes pueden hacerse pasar por usuarios legítimos o realizar acciones no autorizadas. Esto afecta a A1300 4.4.6, AX1800 4.4.6, AXT1800 4.4.6, MT3000 4.4.6, MT2500 4.4.6, MT6000 4.5.0, MT1300 4.3.7, MT300N-V2 4.3.7, AR750S 4.3.7, AR750 4.3.7, AR300M 4.3.7 y B1300 4.3.7."
}
],
"lastModified": "2026-06-17T06:40:13.947",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:gl-inet:gl-ax1800_firmware:4.3.7:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "9085B46F-0620-4126-9E6B-C729C49C23C4"
},
{
"criteria": "cpe:2.3:o:gl-inet:gl-ax1800_firmware:4.4.6:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "CC12DFE3-F634-4737-AEF7-82685634F65E"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:gl-inet:gl-ax1800:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "459CA3AD-7D9A-4E72-8847-9F989232CDCD"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:gl-inet:gl-axt1800_firmware:4.3.7:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "C3C99D06-8CF3-4F1F-9729-DDD871CD28D8"
},
{
"criteria": "cpe:2.3:o:gl-inet:gl-axt1800_firmware:4.4.6:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "2321AEF1-B475-439F-A936-581337CB5181"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:gl-inet:gl-axt1800:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "49448661-9D95-4218-B2FA-73610AA5523C"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:gl-inet:gl-mt3000_firmware:4.3.7:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "0E4AFE9D-666C-4898-A27B-3AAC1A74908D"
},
{
"criteria": "cpe:2.3:o:gl-inet:gl-mt3000_firmware:4.4.6:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "12F39096-F3A6-4240-9CCF-3CEB44A549D4"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:gl-inet:gl-mt3000:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "4D832083-488B-40F2-8D7A-66E917DF67F9"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:gl-inet:gl-mt2500_firmware:4.3.7:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "5BDCB33B-3A4D-4F62-A302-73C10852529B"
},
{
"criteria": "cpe:2.3:o:gl-inet:gl-mt2500_firmware:4.4.6:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "D78DCE77-BBC1-4702-89F3-A2064A82ED85"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:gl-inet:gl-mt2500:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "88C600EF-AF68-45F0-B9C0-7ECA0D33179C"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:gl-inet:gl-mt6000_firmware:4.3.7:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "E0991507-2442-42D2-AFB2-79D91F631CC7"
},
{
"criteria": "cpe:2.3:o:gl-inet:gl-mt6000_firmware:4.4.6:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "BB2FAEE3-AF10-4D2A-9A5B-8F783613AC7F"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:gl-inet:gl-mt6000:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "0480E0BD-DAEE-42E7-A6EB-BC09889CC7B9"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:gl-inet:gl-mt1300_firmware:4.3.7:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "D462B247-60E8-4044-B413-D145F342F8BA"
},
{
"criteria": "cpe:2.3:o:gl-inet:gl-mt1300_firmware:4.4.6:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "843FD80C-235B-4B28-9D98-8DDBFED335D4"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:gl-inet:gl-mt1300:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "65A8D1C9-9EAE-4EDF-A1D4-D45E9EE65585"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:gl-inet:gl-mt300n-v2_firmware:4.3.7:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "7469E6FA-07DB-430D-BAD8-21AF64C55FBA"
},
{
"criteria": "cpe:2.3:o:gl-inet:gl-mt300n-v2_firmware:4.4.6:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "C6E6EF01-62DC-438B-B975-C3DF84DC6E52"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:gl-inet:gl-mt300n-v2:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "EA4A042E-2C80-4EF9-93CA-D2756216BB0C"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:gl-inet:gl-ar750s_firmware:4.3.7:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "4037EFB4-EA0A-4C89-800A-2990AA8BC185"
},
{
"criteria": "cpe:2.3:o:gl-inet:gl-ar750s_firmware:4.4.6:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "F760479D-D8E7-4AC2-8083-AAE870225CE7"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:gl-inet:gl-ar750s:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "8C939D70-5353-43B7-AEF9-8F1D784DD4EF"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:gl-inet:gl-ar750_firmware:4.3.7:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "ACAAD071-0070-48B9-9797-26B1D5CAC962"
},
{
"criteria": "cpe:2.3:o:gl-inet:gl-ar750_firmware:4.4.6:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "C03FF3D4-BC96-42DB-8EC6-466A1C02B534"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:gl-inet:gl-ar750:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "6FE176E8-8CB1-429B-9B3B-E1F58EC0C8F5"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:gl-inet:gl-ar300m_firmware:4.3.7:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "E267A0D1-8D9B-43A9-88F0-3CA961403FBC"
},
{
"criteria": "cpe:2.3:o:gl-inet:gl-ar300m_firmware:4.4.6:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "551632B5-BBAC-4A4D-96BD-8D49EF3A5EFB"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:gl-inet:gl-ar300m:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "10C965DA-2D49-4ED6-B028-3A23164EDC14"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:gl-inet:gl-b1300_firmware:4.3.7:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "9E6AF4D2-8BD0-4536-82AA-A9A06441DB59"
},
{
"criteria": "cpe:2.3:o:gl-inet:gl-b1300_firmware:4.4.6:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "AFBE858E-8D41-4221-8520-25BA35EFE8D3"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:gl-inet:gl-b1300:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "10D84ECB-35CB-42B0-B925-8B631C235CC2"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:gl-inet:gl-a1300_firmware:4.3.7:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "1D582CF8-55A2-4261-84A3-DB5677C569D2"
},
{
"criteria": "cpe:2.3:o:gl-inet:gl-a1300_firmware:4.4.6:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "789782AD-CCC9-403C-810A-F634B09EEB5B"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:gl-inet:gl-a1300:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "2365517B-F8AF-490D-9282-36679EB484D2"
}
],
"operator": "OR"
}
],
"operator": "AND"
}
],
"sourceIdentifier": "cve@mitre.org"
}