8.1
CVSSv3

CVE-2021-35979

Published: 08/10/2021 Updated: 26/05/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.1 | Impact Score: 5.9 | Exploitability Score: 2.2
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

An issue exists in Digi RealPort up to and including 4.8.488.0. The 'encrypted' mode is vulnerable to man-in-the-middle attacks and does not perform authentication.

Vulnerable Product Search on Vulmon Subscribe to Product

digi realport

digi connectport ts 8/16 firmware

digi connectport lts 8/16/32 firmware

digi passport integrated console server firmware

digi cm firmware

digi portserver ts firmware

digi portserver ts mei firmware

digi portserver ts mei hardened firmware

digi portserver ts m mei firmware

digi 6350-sr firmware

digi portserver ts p mei firmware

digi transport wr11 xt firmware

digi one iap family firmware

digi one ia firmware

digi wr31 firmware

digi wr44 r firmware

digi connect es firmware

digi wr21 firmware