7.5
CVSSv3

CVE-2021-27422

Published: 23/03/2022 Updated: 24/10/2022
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

GE UR firmware versions prior to version 8.1x web server interface is supported on UR over HTTP protocol. It allows sensitive information exposure without authentication.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ge multilin_b30_firmware

ge multilin_b90_firmware

ge multilin_c60_firmware

ge multilin_c70_firmware

ge multilin_c95_firmware

ge multilin_d30_firmware

ge multilin_d60_firmware

ge multilin_f35_firmware

ge multilin_f60_firmware

ge multilin_g30_firmware

ge multilin_g60_firmware

ge multilin_l30_firmware

ge multilin_l60_firmware

ge multilin_l90_firmware

ge multilin_m60_firmware

ge multilin_n60_firmware

ge multilin_t35_firmware

ge multilin_t60_firmware

ge multilin_c30_firmware