4.3

CVE-2021-1896

Weak configuration in WLAN could cause forwarding of unencrypted packets from one client to another in Snapdragon Compute, Snapdragon Connectivity

Data is provided by the National Vulnerability Database (NVD)
QualcommAqt1000 Firmware Version-
   QualcommAqt1000 Version-
QualcommQca6164 Firmware Version-
   QualcommQca6164 Version-
QualcommQca6174 Firmware Version-
   QualcommQca6174 Version-
QualcommQca6174a Firmware Version-
   QualcommQca6174a Version-
QualcommQca6420 Firmware Version-
   QualcommQca6420 Version-
QualcommQca6430 Firmware Version-
   QualcommQca6430 Version-
QualcommQca9377 Firmware Version-
   QualcommQca9377 Version-
QualcommSc8180x Firmware Version-
   QualcommSc8180x Version-
QualcommSd 8c Firmware Version-
   QualcommSd 8c Version-
QualcommSd 8cx Firmware Version-
   QualcommSd 8cx Version-
QualcommSd7c Firmware Version-
   QualcommSd7c Version-
QualcommSd850 Firmware Version-
   QualcommSd850 Version-
QualcommSm6250 Firmware Version-
   QualcommSm6250 Version-
QualcommWcd9340 Firmware Version-
   QualcommWcd9340 Version-
QualcommWcd9341 Firmware Version-
   QualcommWcd9341 Version-
QualcommWcn3990 Firmware Version-
   QualcommWcn3990 Version-
QualcommWcn3991 Firmware Version-
   QualcommWcn3991 Version-
QualcommWcn3998 Firmware Version-
   QualcommWcn3998 Version-
QualcommWcn6850 Firmware Version-
   QualcommWcn6850 Version-
QualcommWsa8810 Firmware Version-
   QualcommWsa8810 Version-
QualcommWsa8815 Firmware Version-
   QualcommWsa8815 Version-
QualcommSdx55 Firmware Version-
   QualcommSdx55 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.03% 0.054
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 4.3 2.8 1.4
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
nvd@nist.gov 3.3 6.5 2.9
AV:A/AC:L/Au:N/C:P/I:N/A:N
product-security@qualcomm.com 4.3 2.8 1.4
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
CWE-319 Cleartext Transmission of Sensitive Information

The product transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.