CVE-2021-27440: Critical severity ge dr60 vulnerability
The software contains a hard-coded password it uses for its own inbound authentication or for outbound communication to external components on the Reason DR60 (all firmware versions prior to 02A04.1).
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-27440?
CVE-2021-27440 is a vulnerability in the Ge Reason DR60 firmware that allows for a hard-coded password to be used for inbound authentication or outbound communication.
What is the severity of CVE-2021-27440?
CVE-2021-27440 has a severity rating of 9.8 (Critical).
Which software versions are affected by CVE-2021-27440?
All firmware versions prior to 02A04.1 of the Ge Reason DR60 firmware are affected by CVE-2021-27440.
How can I fix CVE-2021-27440?
To fix CVE-2021-27440, it is recommended to update the Ge Reason DR60 firmware to version 02A04.1 or later.
Are there any additional references for CVE-2021-27440?
Yes, you can find more information about CVE-2021-27440 at the following URL: https://us-cert.cisa.gov/ics/advisories/icsa-21-082-03.