HIGH · 7.5

CVE-2021-37386

Furukawa Electric LatAm 423-41W/AC before v1.1.4 and LD421-21W before v1.3.3 were discovered to contain an HTML injection vulnerability via the serial number update function.

Vulnerability Description

Furukawa Electric LatAm 423-41W/AC before v1.1.4 and LD421-21W before v1.3.3 were discovered to contain an HTML injection vulnerability via the serial number update function.

CVSS Score

7.5

HIGH

CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:H
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
HIGH
User Interaction
REQUIRED
Scope
CHANGED
Confidentiality
LOW
Integrity
LOW
Availability
HIGH

Affected Products

VendorProductVersions
Furukawa423-41W\/Ac Firmware< 1.2.0
Furukawa423-41W\/Ac-
FurukawaLd421-21W Firmware< 1.5.0
FurukawaLd421-21W-
FurukawaLd420-10R Firmware< 1.4.0
FurukawaLd420-10R-
FurukawaLd421-21Wv Firmware< 1.5.0
FurukawaLd421-21Wv-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2021-37386?

CVE-2021-37386 is a vulnerability with a CVSS score of 7.5 (HIGH). Furukawa Electric LatAm 423-41W/AC before v1.1.4 and LD421-21W before v1.3.3 were discovered to contain an HTML injection vulnerability via the serial number update function.

How severe is CVE-2021-37386?

CVE-2021-37386 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2021-37386?

Check the references section above for vendor advisories and patch information. Affected products include: Furukawa 423-41W\/Ac Firmware, Furukawa 423-41W\/Ac, Furukawa Ld421-21W Firmware, Furukawa Ld421-21W, Furukawa Ld420-10R Firmware.