Back to search
CVE-2021-35978
Published: Dec 10, 2021
Modified: Aug 4, 2024
PUBLISHED
Description
An issue was discovered in Digi TransPort DR64, SR44 VC74, and WR. The ZING protocol allows arbitrary remote command execution with SUPER privileges. This allows an attacker (with knowledge of the protocol) to execute arbitrary code on the controller including overwriting firmware, adding/removing users, disabling the internal firewall, etc.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://digi.com
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now