CVE-2026-67578

Summary

FA-50 all versions miss authentication for some configuration. An attacker with access to the vessel's internal network can manipulate the product's settings screen to alter some configuration parameters.

Affected Software

VendorProductVersion RangeStatus
FURUNO ELECTRIC CO., LTD.FA-50allaffected

Weaknesses

  • CWE-306: Missing authentication for critical function

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: yes
    • Technical Impact: partial

References