9.8

CVE-2021-27444

The Weintek cMT product line is vulnerable to various improper access controls, which may allow an unauthenticated attacker to remotely access and download sensitive information and perform administrative actions on behalf of a legitimate administrator.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
WeintekCmt-svr-100 Firmware Version < 20210305
   WeintekCmt-svr-100 Version-
WeintekCmt-svr-102 Firmware Version < 20210305
   WeintekCmt-svr-102 Version-
WeintekCmt-svr-200 Firmware Version < 20210305
   WeintekCmt-svr-200 Version-
WeintekCmt-svr-202 Firmware Version < 20210305
   WeintekCmt-svr-202 Version-
WeintekCmt-g01 Firmware Version < 20210209
   WeintekCmt-g01 Version-
WeintekCmt-g02 Firmware Version < 20210209
   WeintekCmt-g02 Version-
WeintekCmt-g03 Firmware Version < 20210222
   WeintekCmt-g03 Version-
WeintekCmt-g04 Firmware Version < 20210222
   WeintekCmt-g04 Version-
WeintekCmt3071 Firmware Version < 20210218
   WeintekCmt3071 Version-
WeintekCmt3072 Firmware Version < 20210218
   WeintekCmt3072 Version-
WeintekCmt3090 Firmware Version < 20210218
   WeintekCmt3090 Version-
WeintekCmt3103 Firmware Version < 20210218
   WeintekCmt3103 Version-
WeintekCmt3151 Firmware Version < 20210218
   WeintekCmt3151 Version-
WeintekCmt-hdm Firmware Version < 20210204
   WeintekCmt-hdm Version-
WeintekCmt-fhd Firmware Version < 20210208
   WeintekCmt-fhd Version-
WeintekCmt-ctrl01 Firmware Version < 20210302
   WeintekCmt-ctrl01 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.3% 0.527
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
ics-cert@hq.dhs.gov 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE-284 Improper Access Control

The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.