CVE Database
/

CVE-2021-22276

Back to search

CVE-2021-22276

Published: Sep 23, 2021

Modified: Sep 16, 2024

PUBLISHED

CVSS v3.1

6.1

MEDIUM

Description

The vulnerability allows a successful attacker to bypass the integrity check of FW uploaded to the free@home System Access Point.

VendorProductVersions

ABB

System Access Point

affected
2CKA006200A0156 - <= 2.6.3
affected
2CKA006200A0155 - <= 2.6.3
affected
2CKA006220A0240 - <= 2.6.3
affected
2CKA006220A0136 - <= 2.6.3
affected
2CKA006200A0130 - <= 2.6.3

+2 more versions

Busch-Jaeger

System Access Point

affected
2CKA006220A0031 - <= 2.6.3
affected
2CKA006200A0154 - <= 2.6.3

Weaknesses (CWE)

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:H

Attack Vector

Local

Attack Complexity

Low

Privileges Required

None

User Interaction

Required

Scope

Unchanged

Confidentiality

None

Integrity

Low

Availability

High

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now