TROYANOSYVIRUS
Back to CVEs

CVE-2021-41543

MEDIUM
6.5

Description

A vulnerability has been identified in Climatix POL909 (AWB module) (All versions < V11.44), Climatix POL909 (AWM module) (All versions < V11.36). The handling of log files in the web application of affected devices contains an information disclosure vulnerability which could allow logged in users to access sensitive files.

CVE Details

CVSS v3.1 Score6.5
SeverityMEDIUM
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Attack VectorNETWORK
ComplexityLOW
Privileges RequiredLOW
User InteractionNONE
Published3/8/2022
Last Modified11/21/2024
Sourcenvd
Honeypot Sightings0

Affected Products

siemens:climatix_pol909siemens:climatix_pol909_firmware

Weaknesses (CWE)

CWE-284CWE-532

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.