Vulnerability Description
LANCOM R&S Unified Firewall (UF) devices running LCOS FX 10.5 allow Relative Path Traversal.
CVSS Score
7.5
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Lancom-Systems | Lcos Fx | 10.5 |
| Lancom-Systems | Uf-160 | - |
| Lancom-Systems | Uf-260 | - |
| Lancom-Systems | Uf-500 | - |
| Lancom-Systems | Uf-60 | - |
| Lancom-Systems | Uf-910 | - |
Related Weaknesses (CWE)
References
- https://www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2021-010.tExploitThird Party Advisory
- https://www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2021-010.tExploitThird Party Advisory
FAQ
What is CVE-2021-31538?
CVE-2021-31538 is a vulnerability with a CVSS score of 7.5 (HIGH). LANCOM R&S Unified Firewall (UF) devices running LCOS FX 10.5 allow Relative Path Traversal.
How severe is CVE-2021-31538?
CVE-2021-31538 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-31538?
Check the references section above for vendor advisories and patch information. Affected products include: Lancom-Systems Lcos Fx, Lancom-Systems Uf-160, Lancom-Systems Uf-260, Lancom-Systems Uf-500, Lancom-Systems Uf-60.