MEDIUM · 6.8

CVE-2021-30061

On Schneider Electric ConneXium Tofino Firewall TCSEFEA23F3F22 before 03.23, TCSEFEA23F3F20/21, and Belden Tofino Xenon Security Appliance, physically proximate attackers can execute code via a crafte...

Vulnerability Description

On Schneider Electric ConneXium Tofino Firewall TCSEFEA23F3F22 before 03.23, TCSEFEA23F3F20/21, and Belden Tofino Xenon Security Appliance, physically proximate attackers can execute code via a crafted file on a USB stick.

CVSS Score

6.8

MEDIUM

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
PHYSICAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
BeldenTofino Xenon Security Appliance Firmware< 03.2.03
BeldenTofino Xenon Security Appliance-
BeldenTofino Argon Fa-Tsa-220-Tx\/Mm Firmware-
BeldenTofino Argon Fa-Tsa-220-Tx\/Mm-
BeldenTofino Argon Fa-Tsa-220-Tx\/Tx Firmware-
BeldenTofino Argon Fa-Tsa-220-Tx\/Tx-
BeldenTofino Argon Fa-Tsa-220-Mm\/Tx Firmware-
BeldenTofino Argon Fa-Tsa-220-Mm\/Tx-
BeldenTofino Argon Fa-Tsa-220-Mm\/Mm Firmware-
BeldenTofino Argon Fa-Tsa-220-Mm\/Mm-
BeldenTofino Argon Fa-Tsa-100-Tx\/Tx Firmware-
BeldenTofino Argon Fa-Tsa-100-Tx\/Tx-
BeldenEagle 20 Tofino 943 987-505-Mm\/Mm Firmware-
BeldenEagle 20 Tofino 943 987-505-Mm\/Mm-
BeldenEagle 20 Tofino 943 987-504-Mm\/Tx Firmware-
BeldenEagle 20 Tofino 943 987-504-Mm\/Tx-
BeldenEagle 20 Tofino 943 987-502 -Tx\/Mm Firmware-
BeldenEagle 20 Tofino 943 987-502 -Tx\/Mm-
BeldenEagle 20 Tofino 943 987-501-Tx\/Tx Firmware-
BeldenEagle 20 Tofino 943 987-501-Tx\/Tx-

References

FAQ

What is CVE-2021-30061?

CVE-2021-30061 is a vulnerability with a CVSS score of 6.8 (MEDIUM). On Schneider Electric ConneXium Tofino Firewall TCSEFEA23F3F22 before 03.23, TCSEFEA23F3F20/21, and Belden Tofino Xenon Security Appliance, physically proximate attackers can execute code via a crafte...

How severe is CVE-2021-30061?

CVE-2021-30061 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2021-30061?

Check the references section above for vendor advisories and patch information. Affected products include: Belden Tofino Xenon Security Appliance Firmware, Belden Tofino Xenon Security Appliance, Belden Tofino Argon Fa-Tsa-220-Tx\/Mm Firmware, Belden Tofino Argon Fa-Tsa-220-Tx\/Mm, Belden Tofino Argon Fa-Tsa-220-Tx\/Tx Firmware.