The MS27102A Remote Spectrum Monitor is vulnerable to an authentication bypass that allows unauthorized users to access and manipulate its management interface. Because the device provides no mechanism to enable or configure authentication, the issue is inherent to its design rather than a deployment error.
History

Wed, 01 Apr 2026 02:15:00 +0000

Type Values Removed Values Added
First Time appeared Anritsu
Anritsu remote Spectrum Monitor Ms27100a
Anritsu remote Spectrum Monitor Ms27101a
Anritsu remote Spectrum Monitor Ms27102a
Anritsu remote Spectrum Monitor Ms27103a
Vendors & Products Anritsu
Anritsu remote Spectrum Monitor Ms27100a
Anritsu remote Spectrum Monitor Ms27101a
Anritsu remote Spectrum Monitor Ms27102a
Anritsu remote Spectrum Monitor Ms27103a

Tue, 31 Mar 2026 19:00:00 +0000

Type Values Removed Values Added
Description The MS27102A Remote Spectrum Monitor is vulnerable to an authentication bypass that allows unauthorized users to access and manipulate its management interface. Because the device provides no mechanism to enable or configure authentication, the issue is inherent to its design rather than a deployment error.
Title Missing Authentication for Critical Function vulnerability in Anritsu Remote Spectrum Monitor
Weaknesses CWE-306
References
Metrics cvssV4_0

{'score': 9.3, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2026-04-01T13:43:44.724Z

Reserved: 2026-02-27T18:08:31.007Z

Link: CVE-2026-3356

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-03-31T19:16:28.943

Modified: 2026-03-31T19:16:28.943

Link: CVE-2026-3356

cve-icon Redhat

No data.