CVE-2023-41627: O-Ran-Sc Ric Message Router

High severity, CVSS 7.5. EPSS: 1.4% chance of exploitation in the next 30 days.

O-RAN Software Community ric-plt-lib-rmr v4.9.0 does not validate the source of the routing tables it receives, potentially allowing attackers to send forged routing tables to the device.

Affected products

  • O-Ran-Sc Ric Message Router: version 4.9.0 only

Published 2023-09-01. Last modified 2026-06-17.