FA-50 all versions contain hard-coded credentials.
An attacker, who knows the credentials and has access to the vessel's internal network, can operate the settings screen using that credentials to alter the identification number.
Metrics
Affected Vendors & Products
References
History
Fri, 28 Aug 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Furuno Electric
Furuno Electric fa-50 |
|
| Vendors & Products |
Furuno Electric
Furuno Electric fa-50 |
Tue, 25 Aug 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 25 Aug 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Hard‑coded Credentials Allow Vessel Identification Spoofing |
Tue, 25 Aug 2026 08:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | FA-50 all versions contain hard-coded credentials. An attacker, who knows the credentials and has access to the vessel's internal network, can operate the settings screen using that credentials to alter the identification number. | |
| Weaknesses | CWE-798 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: jpcert
Published: 2026-08-25T07:43:10.005Z
Updated: 2026-08-25T14:51:55.400Z
Reserved: 2026-08-04T01:31:34.626Z
Link: CVE-2026-59769
Updated: 2026-08-25T14:46:33.865Z
Status : Deferred
Published: 2026-08-25T08:18:09.717
Modified: 2026-08-28T16:09:10.947
Link: CVE-2026-59769
No data.