Unrated severityNVD Advisory· Published Apr 22, 2021· Updated Aug 3, 2024
CVE-2021-27393
CVE-2021-27393
Description
A vulnerability has been identified in Nucleus NET (All versions), Nucleus ReadyStart V3 (All versions < V2013.08), Nucleus Source Code (Versions including affected DNS modules). The DNS client does not properly randomize UDP port numbers of DNS requests. That could allow an attacker to poison the DNS cache or spoof DNS resolving.
Affected products
3- Range: All versions
- Range: All versions < V2013.08
- Siemens/Nucleus Source Codev5Range: Versions including affected DNS modules
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- cert-portal.siemens.com/productcert/pdf/ssa-201384.pdfmitrex_refsource_MISC
News mentions
0No linked articles in our index yet.