CVE-2026-93309
5.3
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P
Summary
A vulnerability was determined in O-RAN-SC SMO OAM 2025-06-10. Affected by this issue is some unknown functionality of the component VES Collector. Executing a manipulation can lead to allocation of resources. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized. The project was informed of the problem early through a bug report but has not responded yet.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| O-RAN-SC | SMO OAM | 2025-06-10 | affected |
Weaknesses
- CWE-770: Allocation of Resources
- CWE-400: Resource Consumption
References
- https://vuldb.com/vuln/406595
- https://vuldb.com/vuln/406595/cti
- https://vuldb.com/cve/CVE-2026-93309
- https://vuldb.com/submit/942312
- https://lf-o-ran-sc.atlassian.net/browse/SMO-203
- https://gist.github.com/fklement/639eb04a12cc5c015f9b960b0de96d80
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.