Vulnerability Description
Tieline IP Audio Gateway 2.6.4.8 and below is affected by Incorrect Access Control. A vulnerability in the Tieline Web Administrative Interface could allow an unauthenticated user to access a sensitive part of the system with a high privileged account.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Tieline | Ip Audtio Gateway Firmware | <= 2.6.4.8 |
| Tieline | Ip Audtio Gateway | - |
Related Weaknesses (CWE)
References
- https://pratikkhalane91.medium.com/use-of-default-credentials-to-unauthorised-reExploitThird Party Advisory
- https://pratikkhalane91.medium.com/use-of-default-credentials-to-unauthorised-reExploitThird Party Advisory
FAQ
What is CVE-2021-35336?
CVE-2021-35336 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Tieline IP Audio Gateway 2.6.4.8 and below is affected by Incorrect Access Control. A vulnerability in the Tieline Web Administrative Interface could allow an unauthenticated user to access a sensitiv...
How severe is CVE-2021-35336?
CVE-2021-35336 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2021-35336?
Check the references section above for vendor advisories and patch information. Affected products include: Tieline Ip Audtio Gateway Firmware, Tieline Ip Audtio Gateway.