PT-2021-4344 · Emerson · Emerson Wirelesshart Gateway

Published

2021-10-05

·

Updated

2021-10-05

·

CVE-2021-81019

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Emerson WirelessHART Gateway versions 1420, 1410D, and 1410
Description The issue is related to the microprogram software of Emerson WirelessHART Gateway series 1420, 1410D, and 1410, where it fails to neutralize special elements used in an operating system command. This could allow a remote attacker to execute arbitrary commands.
Recommendations For Emerson WirelessHART Gateway versions 1420, 1410D, and 1410, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

OS Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2021-04971
CVE-2021-81019

Affected Products

Emerson Wirelesshart Gateway