CVE-2021-3460: Critical severity Motorola Mh702x Firmware vulnerability
The Motorola MH702x devices, prior to version 2.0.0.301, do not properly verify the server certificate during communication with the support server which could lead to the communication channel being accessible by an attacker.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Motorola MH702xto a version that resolves this vulnerability.Fixed in 2.0.0.301
Event History
Frequently Asked Questions
What is CVE-2021-3460?
CVE-2021-3460 is a vulnerability that affects Motorola MH702x devices prior to version 2.0.0.301. It allows an attacker to access the communication channel by exploiting a lack of proper server certificate verification.
How severe is CVE-2021-3460?
CVE-2021-3460 has a severity rating of 9.8 out of 10, which is classified as critical.
How can I fix CVE-2021-3460?
To fix CVE-2021-3460, you should update your Motorola MH702x device to version 2.0.0.301 or later.
Where can I find more information about CVE-2021-3460?
You can find more information about CVE-2021-3460 on the Motorola Mentor website: https://motorolamentor.zendesk.com/hc/en-us/articles/1260804087249