Vulnerability Description
AVE DOMINAplus <=1.10.x suffers from an unauthenticated reboot command execution. Attackers can exploit this issue to cause a denial of service scenario.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ave | Dominaplus | >= 1.8.4, <= 1.10.77 |
| Ave | 53Ab-Wbs Firmware | 1.10.62 |
| Ave | 53Ab-Wbs | - |
| Ave | Ts01 Firmware | 1.0.65 |
| Ave | Ts01 | - |
| Ave | Ts03X-V Firmware | 1.10.45a |
| Ave | Ts03X-V | - |
| Ave | Ts04X-V Firmware | 1.10.45a |
| Ave | Ts04X-V | - |
| Ave | Ts05 Firmware | 1.10.36 |
| Ave | Ts05 | - |
| Ave | Ts05N-V Firmware | - |
| Ave | Ts05N-V | - |
Related Weaknesses (CWE)
References
- https://cwe.mitre.org/data/definitions/306.htmlTechnical Description
- https://www.exploit-db.com/exploits/47820ExploitThird Party AdvisoryVDB Entry
- https://www.zeroscience.mk/en/vulnerabilities/ZSL-2019-5548.phpExploitThird Party Advisory
- https://cwe.mitre.org/data/definitions/306.htmlTechnical Description
- https://www.exploit-db.com/exploits/47820ExploitThird Party AdvisoryVDB Entry
- https://www.zeroscience.mk/en/vulnerabilities/ZSL-2019-5548.phpExploitThird Party Advisory
FAQ
What is CVE-2020-21996?
CVE-2020-21996 is a vulnerability with a CVSS score of 7.5 (HIGH). AVE DOMINAplus <=1.10.x suffers from an unauthenticated reboot command execution. Attackers can exploit this issue to cause a denial of service scenario.
How severe is CVE-2020-21996?
CVE-2020-21996 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-21996?
Check the references section above for vendor advisories and patch information. Affected products include: Ave Dominaplus, Ave 53Ab-Wbs Firmware, Ave 53Ab-Wbs, Ave Ts01 Firmware, Ave Ts01.