CVE-2021-3459: OS Command Injection
Published Aug 17, 2021
·Updated
A privilege escalation vulnerability was reported in the MM1000 device configuration web server, which could allow privileged shell access and/or arbitrary privileged commands to be executed on the adapter.
Affected Software
4 affected components
Motorola Mm1000 Firmware
Motorola MM1000
All of the following
Motorola Mm1000 Firmware
Motorola MM1000
Event History
Aug 17, 2021
CVE Published
via MITRE·04:25 PM
Data Sourced
via MITRE·04:25 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Oct 15, 58461
Event
via MITRE·03:13 PM
Frequently Asked Questions
1
What is CVE-2021-3459?
CVE-2021-3459 is a privilege escalation vulnerability in the MM1000 device configuration web server.
2
How does CVE-2021-3459 impact Motorola MM1000 Firmware?
CVE-2021-3459 allows for privileged shell access and/or execution of arbitrary privileged commands on the adapter.
3
What is the severity of CVE-2021-3459?
CVE-2021-3459 has a severity rating of high, with a CVSS score of 6.8.
4
Is Motorola MM1000 vulnerable to CVE-2021-3459?
No, Motorola MM1000 is not vulnerable to CVE-2021-3459.
5
How can I fix CVE-2021-3459?
To fix CVE-2021-3459, apply the patch or update provided by the vendor.