Medium severity6.2NVD Advisory· Published Jul 22, 2021· Updated Jun 17, 2026
CVE-2021-35520
CVE-2021-35520
Description
A Buffer Overflow in Thrift command handlers in IDEMIA Morpho Wave Compact and VisionPass devices before 2.6.2 allows physically proximate authenticated attackers to achieve code execution, denial of services, and information disclosure via serial ports.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7- IDEMIA/Morpho Wave Compact and VisionPass devicesdescription
- Range: <2.6.2
- Range: <2.6.2
- cpe:2.3:o:idemia:morphowave_compact_mdpi_firmware:*:*:*:*:*:*:*:*Range: <2.6.2
- cpe:2.3:o:idemia:morphowave_compact_mdpi-m_firmware:*:*:*:*:*:*:*:*Range: <2.6.2
- cpe:2.3:o:idemia:visionpass_mdpi_firmware:*:*:*:*:*:*:*:*Range: <2.6.2
- cpe:2.3:o:idemia:visionpass_mdpi-m_firmware:*:*:*:*:*:*:*:*Range: <2.6.2
Patches
Vulnerability mechanics
References
3- biometricdevices.idemia.com/s/global-search/0696700000JJa0zAADnvdPatchVendor Advisory
- biometricdevices.idemia.com/s/global-search/0696700000JJa1nAADnvdPatchVendor Advisory
- www.idemia.comnvdProduct
News mentions
0No linked articles in our index yet.