← Back

CVE-2021-38486

nvd nist
Published: Oct 19, 2021Modified: Nov 21, 2024

JSON object

Loading...
8.5
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 6.0
Source: NVD

Description

InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 cloud portal allows for self-registration of the affected product without any requirements to create an account, which may allow an attacker to have full control over the product and execute code within the internal network to which the product is connected.

Affected (2)

Ir615 Firmware
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 2.3.0.r4724
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 2.3.0.r4870
Running on/withPlatform Versions
Inhandnetworks
Ir615
All versions

References (2)

Source: ics-cert@hq.dhs.gov
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource

Timeline

No history available yet.