PT-2021-3897 · Unknown · Wdr-3124A Series+4

Published

2021-09-01

·

Updated

2021-09-01

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions OnCell G3470A-LTE Series, WDR-3124A Series, TAP-323 Series, WAC-1001 Series, WAC-2004 Series (affected versions not specified)
Description The issue is related to the use of non-unique X.509 certificates and SSH host keys in the software of certain industrial modems and Wi-Fi routers. This could allow a remote attacker to elevate their privileges.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2021-04289

Affected Products

Oncell G3470A-Lte Series
Tap-323 Series
Wac-1001 Series
Wac-2004 Series
Wdr-3124A Series