CVE-2023-25072
Description
Use of weak credentials exists in SkyBridge MB-A100/110 firmware Ver. 4.2.0 and earlier, which may allow a remote unauthenticated attacker to decrypt password for the WebUI of the product.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
SkyBridge MB-A100/110 firmware 4.2.0 and earlier uses weak credentials, enabling remote unauthenticated attackers to decrypt the WebUI password.
Vulnerability
SkyBridge MB-A100/110 firmware versions 4.2.0 and earlier employ weak credential storage, allowing a remote unauthenticated attacker to decrypt the WebUI administrator password. The vulnerability resides in the password handling mechanism of the WebUI.
Exploitation
An attacker with network access to the device can exploit the weak credential scheme without authentication. By capturing or accessing the stored password hash, the attacker can decrypt it using publicly known weaknesses.
Impact
Successful exploitation yields the plaintext WebUI password, granting full administrative control over the device. This can lead to unauthorized configuration changes, data exfiltration, and potential pivot to internal networks.
Mitigation
The vendor has addressed this issue in firmware versions after 4.2.0. Users should upgrade to the latest firmware available from the official download page [2]. No workaround is documented.
AI Insight generated on May 25, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.
Affected products
2- Range: <=4.2.0
- Seiko Solutions Inc./SkyBridge MB-A100/110v5Range: firmware Ver. 4.2.0 and earlier
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- jvn.jp/en/jp/JVN40604023/mitre
- www.seiko-sol.co.jp/archives/73969/mitre
- www.seiko-sol.co.jp/products/skybridge/skybridge_download/mb-a100/mitre
- www.seiko-sol.co.jp/products/skybridge/skybridge_download/mb-a130/mitre
- www.seiko-sol.co.jp/products/skybridge/skybridge_download/mb-a200/mitre
- www.seiko-sol.co.jp/products/skyspider/skyspider_download/mb-r210/mitre
News mentions
0No linked articles in our index yet.