5.3
CVE-2021-20712
- EPSS 0.25%
- Published 26.04.2021 01:15:08
- Last modified 21.11.2024 05:47:03
- Source vultures@jpcert.or.jp
- Teams watchlist Login
- Open Login
Improper access control vulnerability in NEC Aterm WG2600HS firmware Ver1.5.1 and earlier, and Aterm WX3000HP firmware Ver1.1.2 and earlier allows a device connected to the LAN side to be accessed from the WAN side due to the defect in the IPv6 firewall function.
Data is provided by the National Vulnerability Database (NVD)
Nec ≫ Aterm Wg2600hs Firmware Version <= 1.5.1
Nec ≫ Aterm Wx3000hp Firmware Version <= 1.1.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.25% | 0.454 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 5.3 | 3.9 | 1.4 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
|
nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|