First published: Fri Oct 08 2021(Updated: )
In Digi RealPort through 4.10.490, authentication relies on a challenge-response mechanism that gives access to the server password, making the protection ineffective. An attacker may send an unauthenticated request to the server. The server will reply with a weakly-hashed version of the server's access password. The attacker may then crack this hash offline in order to successfully login to the server.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Digi RealPort | <=1.9-40 | |
Digi RealPort | <=4.10.490 | |
Digi Connectport Ts 8/16 Firmware | ||
Digi Connectport Ts 8/16 | ||
Digi Connectport LTS 8/16/32 Firmware | ||
Digi ConnectPort LTS 8/16/32 | ||
Digi Passport | ||
Digi Passport Integrated Console Server Firmware | ||
Digi Cm | ||
Digi Cm Firmware | ||
Digi PortServer TS Firmware | ||
Digi PortServer TS | ||
Digi PortServer TS MEI Firmware | ||
Digi PortServer TS MEI | ||
Digi Portserver TS MEI Hardened Firmware | ||
Digi Portserver TS MEI Hardened Firmware | ||
Digi PortServer TS MEI Firmware | ||
Digi PortServer TS MEI | ||
Digi 6350-SR | ||
Digi 6350-SR Firmware | ||
Digi PortServer TS P MEI Firmware | ||
Digi PortServer TS MEI | ||
Digi Transport Wr11 Firmware | ||
Digi Transport | ||
Digi One IA | ||
Digi One Iap Firmware | ||
Digi WR31 Firmware | ||
Digi WR31 Firmware | ||
Digi Transport WR44 Firmware | ||
Digi WR44 R Firmware | ||
Digi Connect ES | ||
Digi Connect ES | ||
Digi WR21 | ||
Digi TransPort WR21 | ||
Digi One IA | ||
Digi One Sp Ia Firmware | ||
Digi One Iap Haz | ||
Digi One IAP |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The CVE ID of this vulnerability is CVE-2021-36767.
The severity of CVE-2021-36767 is critical with a CVSS score of 9.8.
Digi RealPort versions up to 4.10.490 on Linux and Windows are affected by CVE-2021-36767.
Authentication in Digi RealPort through 4.10.490 relies on a challenge-response mechanism.
An attacker can send an unauthenticated request to the server to exploit CVE-2021-36767.