CVE-2021-42538: Emerson WirelessHART Gateway
The affected product is vulnerable to a parameter injection via passphrase, which enables the attacker to supply uncontrolled input.
Affected Software
Remediation
Patch Available
Information
Event History
Frequently Asked Questions
What is CVE-2021-42538?
CVE-2021-42538 is a vulnerability that allows an attacker to perform parameter injection via passphrase in the affected product.
What is the severity of CVE-2021-42538?
The severity of CVE-2021-42538 is high, with a severity value of 8.8.
Which products are affected by CVE-2021-42538?
The affected products include Emerson Wireless 1410 Gateway Firmware (up to version 4.7.94), Emerson Wireless 1410d Gateway Firmware (up to version 4.7.94), and Emerson Wireless 1420 Gateway Firmware (up to version 4.7.94).
How does the vulnerability in CVE-2021-42538 work?
The vulnerability in CVE-2021-42538 allows an attacker to supply uncontrolled input via passphrase, leading to parameter injection.
Is there a fix available for CVE-2021-42538?
It is recommended to update the affected product to a version beyond 4.7.94 to mitigate CVE-2021-42538.