CVE-2021-40334

Missing Handler vulnerability in the proprietary management protocol (port TCP 5558) of Hitachi Energy FOX61x, XCM20 allows an attacker that exploits the vulnerability by activating SSH on port TCP 5558 to cause disruption to the NMS and NE communication. This issue affects: Hitachi Energy FOX61x versions prior to R15A. Hitachi Energy XCM20 versions prior to R15A.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:hitachienergy:fox615_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hitachienergy:fox615:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:hitachienergy:xcm20_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hitachienergy:xcm20:-:*:*:*:*:*:*:*

History

21 Nov 2024, 06:23

Type Values Removed Values Added
CVSS v2 : 5.0
v3 : 7.5
v2 : 5.0
v3 : 8.6
References () https://search.abb.com/library/Download.aspx?DocumentID=8DBD000062&LanguageCode=en&DocumentPartId=&Action=Launch - Vendor Advisory () https://search.abb.com/library/Download.aspx?DocumentID=8DBD000062&LanguageCode=en&DocumentPartId=&Action=Launch - Vendor Advisory
References () https://search.abb.com/library/Download.aspx?DocumentID=8DBD000069&LanguageCode=en&DocumentPartId=&Action=Launch - Vendor Advisory () https://search.abb.com/library/Download.aspx?DocumentID=8DBD000069&LanguageCode=en&DocumentPartId=&Action=Launch - Vendor Advisory

08 Dec 2021, 17:15

Type Values Removed Values Added
CPE cpe:2.3:h:hitachienergy:fox615:-:*:*:*:*:*:*:*
cpe:2.3:h:hitachienergy:xcm20:-:*:*:*:*:*:*:*
cpe:2.3:o:hitachienergy:xcm20_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:hitachienergy:fox615_firmware:*:*:*:*:*:*:*:*
References (CONFIRM) https://search.abb.com/library/Download.aspx?DocumentID=8DBD000069&LanguageCode=en&DocumentPartId=&Action=Launch - (CONFIRM) https://search.abb.com/library/Download.aspx?DocumentID=8DBD000069&LanguageCode=en&DocumentPartId=&Action=Launch - Vendor Advisory
References (CONFIRM) https://search.abb.com/library/Download.aspx?DocumentID=8DBD000062&LanguageCode=en&DocumentPartId=&Action=Launch - (CONFIRM) https://search.abb.com/library/Download.aspx?DocumentID=8DBD000062&LanguageCode=en&DocumentPartId=&Action=Launch - Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : 5.0
v3 : 7.5
CWE NVD-CWE-Other

02 Dec 2021, 20:06

Type Values Removed Values Added
New CVE

Information

Published : 2021-12-02 19:15

Updated : 2024-11-21 06:23


NVD link : CVE-2021-40334

Mitre link : CVE-2021-40334

CVE.ORG link : CVE-2021-40334


JSON object : View

Products Affected

hitachienergy

  • xcm20_firmware
  • xcm20
  • fox615
  • fox615_firmware
CWE
CWE-431

Missing Handler

NVD-CWE-Other