CVE-2021-22740: Infoleak
Published May 26, 2021
·Updated
Information Exposure vulnerability exists in homeLYnk (Wiser For KNX) and spaceLYnk V2.60 and prior which could cause information to be exposed when an unauthorized file is uploaded.
Affected Software
4 affected components
Schneider-electric Spacelynk Firmware<=2.6.0
Schneider-electric Spacelynk
Schneider-electric Homelynk Firmware<=2.6.0
Schneider-electric Homelynk
Event History
May 26, 2021
CVE Published
via MITRE·07:20 PM
Data Sourced
via MITRE·07:20 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2021-22740?
CVE-2021-22740 is an Information Exposure vulnerability that exists in homeLYnk (Wiser For KNX) and spaceLYnk v2.60 and prior versions, which could expose information when an unauthorized file is uploaded.
2
What is the severity of CVE-2021-22740?
The severity of CVE-2021-22740 is medium with a CVSS score of 6.5.
3
Which software versions are affected by CVE-2021-22740?
homeLYnk (Wiser For KNX) and spaceLYnk v2.60 and prior versions are affected by CVE-2021-22740.
4
How can CVE-2021-22740 be exploited?
CVE-2021-22740 can be exploited by uploading an unauthorized file.
5
Is Schneider-electric Spacelynk vulnerable to CVE-2021-22740?
No, Schneider-electric Spacelynk is not vulnerable to CVE-2021-22740.