CVE-2021-33529: WEIDMUELLER: WLAN devices affected by Hard-coded Credentials vulnerability
In Weidmueller Industrial WLAN devices in multiple versions the usage of hard-coded cryptographic keys within the service agent binary allows for the decryption of captured traffic across the network from or to the device.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2021-33529?
CVE-2021-33529 is a vulnerability found in Weidmueller Industrial WLAN devices that allows for the decryption of captured network traffic due to the usage of hard-coded cryptographic keys.
What is the severity of CVE-2021-33529?
CVE-2021-33529 has a severity rating of 7.5 (high).
Which software versions are affected by CVE-2021-33529?
Weidmueller Industrial WLAN devices with firmware versions up to and including 1.16.18 are affected.
How can I fix CVE-2021-33529?
To fix CVE-2021-33529, it is recommended to update the firmware of the Weidmueller Industrial WLAN devices to a version higher than 1.16.18.
Are all Weidmueller Industrial WLAN devices vulnerable to CVE-2021-33529?
No, not all Weidmueller Industrial WLAN devices are vulnerable to CVE-2021-33529. Only devices with firmware versions up to and including 1.16.18 are affected.