CVE-2021-20698
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD
Description
Sharp NEC Displays (UN462A R1.300 and prior to it, UN462VA R1.300 and prior to it, UN492S R1.300 and prior to it, UN492VS R1.300 and prior to it, UN552A R1.300 and prior to it, UN552S R1.300 and prior to it, UN552VS R1.300 and prior to it, UN552 R1.300 and prior to it, UN552V R1.300 and prior to it, UX552S R1.300 and prior to it, UX552 R1.300 and prior to it, V864Q R2.000 and prior to it, C861Q R2.000 and prior to it, P754Q R2.000 and prior to it, V754Q R2.000 and prior to it, C751Q R2.000 and prior to it, V984Q R2.000 and prior to it, C981Q R2.000 and prior to it, P654Q R2.000 and prior to it, V654Q R2.000 and prior to it, C651Q R2.000 and prior to it, V554Q R2.000 and prior to it, P404 R3.200 and prior to it, P484 R3.200 and prior to it, P554 R3.200 and prior to it, V404 R3.200 and prior to it, V484 R3.200 and prior to it, V554 R3.200 and prior to it, V404-T R3.200 and prior to it, V484-T R3.200 and prior to it, V554-T R3.200 and prior to it, C501 R2.000 and prior to it, C551 R2.000 and prior to it, C431 R2.000 and prior to it) allows an attacker to obtain root privileges and execute remote code by sending unintended parameters that contain specific characters in http request.
Affected (34)
Products: Sharp Nec Displays: Un462a Firmware, Un462va Firmware, Un492s Firmware, Un492vs Firmware, Un552a Firmware, Un552s Firmware, Un552vs Firmware, Un552 Firmware, Un552v Firmware, Ux552s Firmware, Ux552 Firmware, V864q Firmware, C861q Firmware, P754q Firmware, V754q Firmware, C751q Firmware, V984q Firmware, C981q Firmware, P654q Firmware, V654q Firmware, C651q Firmware, V554q Firmware, P404 Firmware, P484 Firmware, P554 Firmware, V404 Firmware, V484 Firmware, V554 Firmware, V404 T Firmware, V484 T Firmware, V554 T Firmware, C501 Firmware, C551 Firmware, C431 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r1.300 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays Un462a | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r1.300 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays Un462va | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r1.300 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays Un492s | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r1.300 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays Un492vs | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r1.300 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays Un552a | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r1.300 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays Un552s | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r1.300 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays Un552vs | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r1.300 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays Un552 | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r1.300 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays Un552v | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r1.300 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays Ux552s | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r1.300 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays Ux552 | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r2.000 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays V864q | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r2.000 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays C861q | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r2.000 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays P754q | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r2.000 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays V754q | All versions |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r2.000 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays C751q | All versions |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r2.000 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays V984q | All versions |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r2.000 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays C981q | All versions |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r2.000 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays P654q | All versions |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r2.000 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays V654q | All versions |
Configuration U
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r2.000 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays C651q | All versions |
Configuration V
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r2.000 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays V554q | All versions |
Configuration W
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r3.201 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays P404 | All versions |
Configuration X
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r3.201 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays P484 | All versions |
Configuration Y
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r3.201 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays P554 | All versions |
Configuration Z
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r3.201 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays V404 | All versions |
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r3.201 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays V484 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r3.201 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays V554 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r3.201 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays V404 T | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r3.201 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays V484 T | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r3.201 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays V554 T | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r2.000 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays C501 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r2.000 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays C551 | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Up to r2.000 |
| Running on/with | Platform Versions |
|---|---|
Sharp Nec Displays C431 | All versions |
References (2)
Source: psirt-info@cyber.jp.nec.com
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.