Inadequate Encryption Strength in MU320E - CVE-2021-27450

 

Inadequate Encryption Strength in MU320E - CVE-2021-27450

Published: March 24, 2021


Vulnerability identifier: #VU51699
CSH Severity: Low
CVSS v4: 1 [CVSS:4.0/AV:L/AC:L/AT:P/PR:H/UI:A/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2021-27450
CWE-ID: CWE-326
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local administrator to compromise the target system.

The vulnerability exists due to the SSH server configuration file does not implement some best practices, which can lead to additional misconfiguration or be leveraged as part of a larger attack.


Affected software

MU320E

How to mitigate CVE-2021-27450

Install updates from vendor's website.

MU320E - update to 04A00.1

External References

Related Security Bulletins