free5gc UDM是free5GC开源的一个5G移动核心网络的核心网元。 free5gc UDM 1.4.1及之前版本存在安全漏洞,该漏洞源于远程攻击者可将控制字符注入ueId参数,触发内部URL解析错误,可能暴露系统实现细节并有助于服务指纹识别。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-69208 | free5GC UDR's NEF incorrectly returns 500 for missing PFD data (UDR 404) in Nnef_PfdManage | |
| CVE-2025-69247 | free5GC has Heap Buffer Overflow in UPF Leading to Denial of Service | |
| CVE-2025-69248 | free5GC has Array Index Out of Bounds in AMF Leading to Denial of Service | |
| CVE-2025-69232 | free5GC hasProtocol Compliance Violation in UPF Leading to SMF Service Disruption | |
| CVE-2025-69250 | free5GC has Improper Error Handling in UDM, Leading to Information Exposure | |
| CVE-2025-69252 | free5GC has Null Pointer Dereference in UDM, Leading to Service Panic |
No comments yet