free5GC是free5GC开源的一个第 5 代 (5G) 移动核心网络的开源项目。 free5GC 1.4.2及之前版本存在安全漏洞,该漏洞源于UDR服务中删除流量影响订阅的处理程序在验证失败后未正确返回,导致继续执行并删除订阅,未经身份验证的攻击者可通过访问5G服务接口删除任意流量影响订阅。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-40248 | free5gc UDR improper path validation allows unauthenticated creation and modification of T | |
| CVE-2026-40247 | free5gc UDR improper path validation allows unauthenticated access to Traffic Influence Su | |
| CVE-2026-40249 | free5gc UDR fail-open request handling in PolicyDataSubsToNotifySubsIdPut may allow uninte |
No comments yet