📦

wireless_1410d_gateway

Vendor: emerson

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 1 Remote Access
Total CVEs 6 Total Indexed
Avg. EPSS 0.96% Exploit Prob.
Latest CVE CVE-2021-42542 Oct 22

Security Vulnerability Index

Page 1 / 1
8.0 CVSS

The affected product is vulnerable to directory traversal due to mishandling of provided backup folder structure.

EPSS: 1.39%
8.0 CVSS

The affected product is vulnerable to a unsanitized extract folder for system configuration. A low-privileged user can leverage this logic to overwrite the settings and other key functionality.

EPSS: 0.97%
8.0 CVSS

The affected product is vulnerable to a missing permission validation on system backup restore, which could lead to account take over and unapproved settings change.

EPSS: 0.74%
8.0 CVSS

The affected product is vulnerable to a parameter injection via passphrase, which enables the attacker to supply uncontrolled input.

EPSS: 0.92%
8.0 CVSS

The affected product is vulnerable to a disclosure of peer username and password by allowing all users access to read global variables.

EPSS: 0.88%
8.0 CVSS

The affected product is vulnerable to improper input validation in the restore file. This enables an attacker to provide malicious config files to replace any file on disk.

EPSS: 0.87%