PT-2021-14136 · Nec · Univerge Aspire Ux+2

Published

2021-03-26

·

Updated

2021-04-02

·

CVE-2021-20677

CVSS v2.0

3.5

Low

VectorAV:N/AC:M/Au:S/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions: UNIVERGE Aspire WX versions 1.00 through 3.51 UNIVERGE Aspire UX versions 1.00 through 9.70 UNIVERGE SV9100 versions 1.00 through 10.70 SL2100 versions 1.00 through 3.00
Description: The issue allows a remote authenticated attacker to cause a system shutdown and a denial of service (DoS) condition by sending a specially crafted command.
Recommendations: For UNIVERGE Aspire WX versions 1.00 through 3.51, update to a version outside of this range to resolve the issue. For UNIVERGE Aspire UX versions 1.00 through 9.70, update to a version outside of this range to resolve the issue. For UNIVERGE SV9100 versions 1.00 through 10.70, update to a version outside of this range to resolve the issue. For SL2100 versions 1.00 through 3.00, update to a version outside of this range to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2021-20677

Affected Products

Sl2100
Univerge Aspire Ux
Univerge Sv9100