CVE-2021-38485

The affected product is vulnerable to improper input validation in the restore file. This enables an attacker to provide malicious config files to replace any file on disk.
References
Link Resource
https://us-cert.cisa.gov/ics/advisories/icsa-21-278-02 Patch Third Party Advisory US Government Resource
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:emerson:wireless_1410_gateway_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:emerson:wireless_1410_gateway:*:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:emerson:wireless_1410d_gateway_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:emerson:wireless_1410d_gateway:*:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:emerson:wireless_1420_gateway_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:emerson:wireless_1420_gateway:-:*:*:*:*:*:*:*

Information

Published : 2021-10-22 07:15

Updated : 2021-10-27 08:23


NVD link : CVE-2021-38485

Mitre link : CVE-2021-38485


JSON object : View

CWE
CWE-20

Improper Input Validation

Advertisement

dedicated server usa

Products Affected

emerson

  • wireless_1420_gateway_firmware
  • wireless_1410d_gateway
  • wireless_1410_gateway_firmware
  • wireless_1410_gateway
  • wireless_1410d_gateway_firmware
  • wireless_1420_gateway