ZeroHour

CVE-2021-38485

CVSS 3.1
8.8 high
EPSS
<1%p58
Published
()
Modified
Description

The affected product is vulnerable to improper input validation in the restore file. This enables an attacker to provide malicious config files to replace any file on disk.

Vendors
emerson
Products
wireless 1410 gateway firmware, wireless 1410d gateway firmware, wireless 1420 gateway firmware
Weakness
CWE-20
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.