CVE-2021-46903: Medium severity Meinbergglobal Lantime Firmware vulnerability
An issue was discovered in LTOS-Web-Interface in Meinberg LANTIME-Firmware before 6.24.029 MBGID-9343 and 7 before 7.04.008 MBGID-6303. An admin can delete required user accounts (in violation of expected access control).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-46903?
CVE-2021-46903 is classified as a security vulnerability due to improper access control allowing account deletion.
How do I fix CVE-2021-46903?
To fix CVE-2021-46903, upgrade to Meinberg Lantime Firmware version 6.24.029 or 7.04.008 or later.
What are the affected versions for CVE-2021-46903?
CVE-2021-46903 affects Meinberg Lantime Firmware versions prior to 6.24.029 and versions between 7.0.0 and 7.04.008.
What kind of accounts can be deleted due to CVE-2021-46903?
Due to CVE-2021-46903, an admin can delete required user accounts, which may disrupt normal operations.
Who is impacted by CVE-2021-46903?
Users and administrators of Meinberg Lantime systems using affected versions of the firmware are impacted by CVE-2021-46903.