TROYANOSYVIRUS
Zuruck zu CVEs

CVE-2021-30064

CRITICAL
9.8

Beschreibung

On Schneider Electric ConneXium Tofino Firewall TCSEFEA23F3F22 before 03.23, TCSEFEA23F3F20/21, and Belden Tofino Xenon Security Appliance, an SSH login can succeed with hardcoded default credentials (if the device is in the uncommissioned state).

CVE Details

CVSS v3.1 Bewertung9.8
SchweregradCRITICAL
CVSS VektorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
AngriffsvektorNETWORK
KomplexitatLOW
Erforderliche PrivilegienNONE
BenutzerinteraktionNONE
Veroffentlicht4/3/2022
Zuletzt geandert11/21/2024
Quellenvd
Honeypot-Sichtungen0

Betroffene Produkte

belden:eagle_20_tofino_943_987-501-tx\/txbelden:eagle_20_tofino_943_987-501-tx\/tx_firmwarebelden:eagle_20_tofino_943_987-502_-tx\/mmbelden:eagle_20_tofino_943_987-502_-tx\/mm_firmwarebelden:eagle_20_tofino_943_987-504-mm\/txbelden:eagle_20_tofino_943_987-504-mm\/tx_firmwarebelden:eagle_20_tofino_943_987-505-mm\/mmbelden:eagle_20_tofino_943_987-505-mm\/mm_firmwarebelden:tofino_argon_fa-tsa-100-tx\/txbelden:tofino_argon_fa-tsa-100-tx\/tx_firmwarebelden:tofino_argon_fa-tsa-220-mm\/mmbelden:tofino_argon_fa-tsa-220-mm\/mm_firmwarebelden:tofino_argon_fa-tsa-220-mm\/txbelden:tofino_argon_fa-tsa-220-mm\/tx_firmwarebelden:tofino_argon_fa-tsa-220-tx\/mmbelden:tofino_argon_fa-tsa-220-tx\/mm_firmwarebelden:tofino_argon_fa-tsa-220-tx\/txbelden:tofino_argon_fa-tsa-220-tx\/tx_firmwarebelden:tofino_xenon_security_appliancebelden:tofino_xenon_security_appliance_firmwareschneider-electric:tcsefea23f3f20schneider-electric:tcsefea23f3f20_firmwareschneider-electric:tcsefea23f3f21schneider-electric:tcsefea23f3f21_firmwareschneider-electric:tcsefea23f3f22schneider-electric:tcsefea23f3f22_firmware

Schwachen (CWE)

CWE-798

IOC Korrelationen

Keine Korrelationen erfasst

This product uses data from the NVD API but is not endorsed or certified by the NVD.