Compact 5010 Voip IP Firmware
by Auerswald
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2021-40857 | Hig | 0.57 | 8.8 | 0.02 | Dec 13, 2021 | Auerswald COMpact 5500R devices before 8.2B allow Privilege Escalation via the passwd=1 substring. | ||
| CVE-2021-40858 | Med | 0.32 | 4.9 | 0.02 | Dec 13, 2021 | Auerswald COMpact 5500R devices before 8.2B allow Arbitrary File Disclosure. A sub-admin can read the cleartext Admin password via the fileName=../../etc/passwd substring. |
- risk 0.57cvss 8.8epss 0.02
Auerswald COMpact 5500R devices before 8.2B allow Privilege Escalation via the passwd=1 substring.
- risk 0.32cvss 4.9epss 0.02
Auerswald COMpact 5500R devices before 8.2B allow Arbitrary File Disclosure. A sub-admin can read the cleartext Admin password via the fileName=../../etc/passwd substring.