No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Sun, 17 May 2026 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in Open5GS up to 2.7.6. This impacts the function ran_ue_find_by_amf_ue_ngap_id of the file src/amf/context.c of the component AMF/MME. Performing a manipulation results in improper authorization. It is possible to initiate the attack remotely. The exploit has been made public and could be used. The patch is named 5746b8576cfceec18ed87eb7d8cf11b1fb4cd8b1. It is suggested to install a patch to address this issue. | |
| Title | Open5GS AMF/MME context.c ran_ue_find_by_amf_ue_ngap_id improper authorization | |
| First Time appeared |
Open5gs
Open5gs open5gs |
|
| Weaknesses | CWE-266 CWE-285 |
|
| CPEs | cpe:2.3:a:open5gs:open5gs:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Open5gs
Open5gs open5gs |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-05-17T09:00:13.637Z
Reserved: 2026-05-16T12:38:24.093Z
Link: CVE-2026-8743
No data.
Status : Received
Published: 2026-05-17T10:16:35.800
Modified: 2026-05-17T10:16:35.800
Link: CVE-2026-8743
No data.
OpenCVE Enrichment
No data.