An attacker with access to the vessel's internal network can manipulate the product's settings screen to alter some configuration parameters.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 28 Aug 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Furuno Electric
Furuno Electric fa-50 |
|
| Vendors & Products |
Furuno Electric
Furuno Electric fa-50 |
Tue, 25 Aug 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 25 Aug 2026 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | FA‑50 Authentication Bypass Allowing Configuration Changes via Internal Network |
Tue, 25 Aug 2026 08:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | FA-50 all versions miss authentication for some configuration. An attacker with access to the vessel's internal network can manipulate the product's settings screen to alter some configuration parameters. | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2026-08-25T14:51:55.561Z
Reserved: 2026-08-04T01:31:35.564Z
Link: CVE-2026-67578
Updated: 2026-08-25T14:46:35.989Z
Status : Deferred
Published: 2026-08-25T08:18:10.360
Modified: 2026-08-28T16:09:10.947
Link: CVE-2026-67578
No data.
OpenCVE Enrichment
Updated: 2026-08-28T20:38:04Z