Vulnerability Details CVE-2021-20712
Improper access control vulnerability in NEC Aterm WG2600HS firmware Ver1.5.1 and earlier, and Aterm WX3000HP firmware Ver1.1.2 and earlier allows a device connected to the LAN side to be accessed from the WAN side due to the defect in the IPv6 firewall function.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 48.2%
CVSS Severity
CVSS v3 Score 5.3
CVSS v2 Score 5.0
Products affected by CVE-2021-20712
-
cpe:2.3:h:nec:aterm_wg2600hs:-
-
cpe:2.3:h:nec:aterm_wx3000hp:-
-
cpe:2.3:o:nec:aterm_wg2600hs_firmware:-
-
cpe:2.3:o:nec:aterm_wg2600hs_firmware:1.3.2
-
cpe:2.3:o:nec:aterm_wg2600hs_firmware:1.5.1
-
cpe:2.3:o:nec:aterm_wx3000hp_firmware:-
-
cpe:2.3:o:nec:aterm_wx3000hp_firmware:1.1.2