CVE-2021-27452: Critical severity ge all firmware versions prior to v04a00.1 vulnerability
Published Mar 25, 2021
·Updated
The software contains a hard-coded password that could allow an attacker to take control of the merging unit using these hard-coded credentials on the MU320E (all firmware versions prior to v04A00.1).
Affected Software
3 affected components
GE All firmware versions prior to v04A00.1
GE Mu320e Firmware<04a00.1
GE MU320E
Event History
Mar 25, 2021
CVE Published
via MITRE·07:23 PM
Data Sourced
via MITRE·07:23 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2021-27452?
CVE-2021-27452 is a vulnerability in the Ge Mu320e firmware that contains a hard-coded password, allowing an attacker to take control of the merging unit.
2
How severe is CVE-2021-27452?
CVE-2021-27452 has a severity rating of 7.8 (high).
3
Which software versions are affected by CVE-2021-27452?
All firmware versions prior to v04A00.1 of the Ge Mu320e firmware are affected by CVE-2021-27452.
4
How can an attacker exploit CVE-2021-27452?
An attacker can exploit CVE-2021-27452 by using the hard-coded credentials in the Mu320e firmware to take control of the merging unit.
5
Is Ge Mu320e software vulnerable to CVE-2021-27452?
No, the Ge Mu320e software itself is not vulnerable to CVE-2021-27452.