Vulnerability Details CVE-2021-38485
The affected product is vulnerable to improper input validation in the restore file. This enables an attacker to provide malicious config files to replace any file on disk.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 44.7%
CVSS Severity
CVSS v3 Score 8.0
CVSS v2 Score 6.5
Products affected by CVE-2021-38485
-
cpe:2.3:h:emerson:wireless_1410_gateway:-
-
cpe:2.3:h:emerson:wireless_1410d_gateway:-
-
cpe:2.3:h:emerson:wireless_1420_gateway:-
-
cpe:2.3:o:emerson:wireless_1410_gateway_firmware:4.6.43
-
cpe:2.3:o:emerson:wireless_1410_gateway_firmware:4.7.84
-
cpe:2.3:o:emerson:wireless_1410d_gateway_firmware:*
-
cpe:2.3:o:emerson:wireless_1420_gateway_firmware:4.6.43
-
cpe:2.3:o:emerson:wireless_1420_gateway_firmware:4.6.59
-
cpe:2.3:o:emerson:wireless_1420_gateway_firmware:4.7.84