First published: Thu Mar 25 2021(Updated: )
SSH server configuration file does not implement some best practices. This could lead to a weakening of the SSH protocol strength, which could lead to additional misconfiguration or be leveraged as part of a larger attack on the MU320E (all firmware versions prior to v04A00.1).
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Ge Mu320e Firmware | <04a00.1 | |
Ge Mu320e | ||
GE All firmware versions prior to v04A00.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-27450 refers to a vulnerability in the SSH server configuration file on the Ge MU320E firmware, which could weaken the SSH protocol strength and potentially be exploited in a larger attack.
The SSH server configuration file does not implement some best practices, which could lead to a weakening of the SSH protocol strength.
The severity of CVE-2021-27450 is high with a CVSS score of 7.8.
CVE-2021-27450 could be leveraged as part of a larger attack on the Ge MU320E firmware, potentially leading to additional misconfiguration or compromise.
To mitigate CVE-2021-27450, it is recommended to update the Ge MU320E firmware to version 04A00.1 or later.