MEDIUM · 5.3

CVE-2021-44746

UNIVERGE DT 820 V3.2.7.0 and prior, UNIVERGE DT 830 V5.2.7.0 and prior, UNIVERGE DT 930 V2.4.0.0 and prior, IP Phone Manager V8.9.1 and prior, Data Maintenance Tool for DT900 Series V5.3.0.0 and prior...

Vulnerability Description

UNIVERGE DT 820 V3.2.7.0 and prior, UNIVERGE DT 830 V5.2.7.0 and prior, UNIVERGE DT 930 V2.4.0.0 and prior, IP Phone Manager V8.9.1 and prior, Data Maintenance Tool for DT900 Series V5.3.0.0 and prior, Data Maintenance Tool for DT800 Series V4.2.0.0 and prior allows a remote attacker who can access to the internal network, the configuration information may be obtained.

CVSS Score

5.3

MEDIUM

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
LOW
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
NecUniverge Dt830 Firmware<= 5.2.7.0
NecUniverge Dt830-
NecUniverge Dt820 Firmware<= 3.2.7.0
NecUniverge Dt820-
NecUniverge Dt930 Firmware<= 2.4.0.0
NecUniverge Dt930-
NecUniverge Dt900 Data Maintenance Tool<= 5.3.0.0
NecUniverge Dt800 Data Maintenance Tool<= 4.2.0.0
NecUniverge Ip Phone Manager<= 8.9.1

References

FAQ

What is CVE-2021-44746?

CVE-2021-44746 is a vulnerability with a CVSS score of 5.3 (MEDIUM). UNIVERGE DT 820 V3.2.7.0 and prior, UNIVERGE DT 830 V5.2.7.0 and prior, UNIVERGE DT 930 V2.4.0.0 and prior, IP Phone Manager V8.9.1 and prior, Data Maintenance Tool for DT900 Series V5.3.0.0 and prior...

How severe is CVE-2021-44746?

CVE-2021-44746 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2021-44746?

Check the references section above for vendor advisories and patch information. Affected products include: Nec Univerge Dt830 Firmware, Nec Univerge Dt830, Nec Univerge Dt820 Firmware, Nec Univerge Dt820, Nec Univerge Dt930 Firmware.