Vulnerability Description
ZIV Automation 4CCT-EA6-334126BF firmware version 3.23.80.27.36371, allows an unauthenticated, remote attacker to cause a denial of service condition on the device. An attacker could exploit this vulnerability by sending specific packets to the port 7919.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Zivautomation | 4Cct-Ea6-334126Bf Firmware | 3.23.80.27.36371 |
| Zivautomation | 4Cct-Ea6-334126Bf | - |
Related Weaknesses (CWE)
References
- https://www.incibe-cert.es/en/early-warning/ics-advisories/4cct-vulnerable-deniaThird Party Advisory
- https://www.incibe-cert.es/en/early-warning/ics-advisories/4cct-vulnerable-deniaThird Party Advisory
FAQ
What is CVE-2021-25909?
CVE-2021-25909 is a vulnerability with a CVSS score of 8.6 (HIGH). ZIV Automation 4CCT-EA6-334126BF firmware version 3.23.80.27.36371, allows an unauthenticated, remote attacker to cause a denial of service condition on the device. An attacker could exploit this vuln...
How severe is CVE-2021-25909?
CVE-2021-25909 has been rated HIGH with a CVSS base score of 8.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-25909?
Check the references section above for vendor advisories and patch information. Affected products include: Zivautomation 4Cct-Ea6-334126Bf Firmware, Zivautomation 4Cct-Ea6-334126Bf.