CVE-2021-27448: High severity ge all firmware versions prior to v04a00.1 vulnerability
Published Mar 25, 2021
·Updated
A miscommunication in the file system allows adversaries with access to the MU320E to escalate privileges on the MU320E (all firmware versions prior to v04A00.1).
Affected Software
3 affected components
GE All firmware versions prior to v04A00.1
GE Mu320e Firmware<04a00.1
GE MU320E
Event History
Mar 25, 2021
CVE Published
via MITRE·07:35 PM
Data Sourced
via MITRE·07:35 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2021-27448?
CVE-2021-27448 is a vulnerability that allows adversaries with access to the GE MU320E to escalate privileges on the device (all firmware versions prior to v04A00.1).
2
Is GE MU320E firmware affected by CVE-2021-27448?
Yes, all firmware versions of GE MU320E prior to v04A00.1 are affected by CVE-2021-27448.
3
What is the severity of CVE-2021-27448?
The severity of CVE-2021-27448 is high, with a CVSS score of 7.8.
4
How can adversaries exploit CVE-2021-27448?
Adversaries with access to the GE MU320E can exploit CVE-2021-27448 to escalate privileges on the device.
5
How can I fix CVE-2021-27448?
To mitigate CVE-2021-27448, users should update their GE MU320E firmware to version v04A00.1 or later.