PT-2021-20176 · Weidmueller · Weidmueller Industrial Wlan Devices

Published

2021-06-25

·

Updated

2021-07-27

·

CVE-2021-33529

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Weidmueller Industrial WLAN devices (affected versions not specified)
Description The issue concerns the usage of hard-coded cryptographic keys within the service agent binary in Weidmueller Industrial WLAN devices. This allows for the decryption of captured traffic across the network from or to the device.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Using Hardcoded Credentials

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-33529

Affected Products

Weidmueller Industrial Wlan Devices