First published: Tue Feb 01 2022(Updated: )
UNIVERGE DT 820 V3.2.7.0 and prior, UNIVERGE DT 830 V5.2.7.0 and prior, UNIVERGE DT 930 V2.4.0.0 and prior, IP Phone Manager V8.9.1 and prior, Data Maintenance Tool for DT900 Series V5.3.0.0 and prior, Data Maintenance Tool for DT800 Series V4.2.0.0 and prior allows a remote attacker who can access to the internal network, the configuration information may be obtained.
Credit: psirt-info@cyber.jp.nec.com psirt-info@cyber.jp.nec.com
Affected Software | Affected Version | How to fix |
---|---|---|
Nec Univerge Dt830 Firmware | <=5.2.7.0 | |
Nec Univerge Dt830 | ||
Nec Univerge Dt820 Firmware | <=3.2.7.0 | |
Nec Univerge Dt820 | ||
Nec Univerge Dt930 Firmware | <=2.4.0.0 | |
Nec Univerge Dt930 | ||
Nec Univerge Dt900 Data Maintenance Tool | <=5.3.0.0 | |
Nec Univerge Dt800 Data Maintenance Tool | <=4.2.0.0 | |
Nec Univerge Ip Phone Manager | <=8.9.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this issue is CVE-2021-44746.
The severity level of CVE-2021-44746 is medium with a severity value of 5.3.
UNIVERGE DT 820 V3.2.7.0 and prior, UNIVERGE DT 830 V5.2.7.0 and prior, UNIVERGE DT 930 V2.4.0.0 and prior, IP Phone Manager V8.9.1 and prior, Data Maintenance Tool for DT900 Series V5.3.0.0 and prior, Data Maintenance Tool for DT800 Series V4.2.0.0 and prior are affected by CVE-2021-44746.
The impact of CVE-2021-44746 is that a remote attacker who can access the affected devices may be able to execute arbitrary code.
To mitigate CVE-2021-44746, it is recommended to apply the necessary patches or updates provided by NEC.