CVE-2021-33529

In Weidmueller Industrial WLAN devices in multiple versions the usage of hard-coded cryptographic keys within the service agent binary allows for the decryption of captured traffic across the network from or to the device.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CERTVDECNA
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 56%
VendorProductVersion
weidmuellerie-wl-bl-ap-cl-eu_firmware
𝑥
≤ 1.16.18
weidmuellerie-wlt-bl-ap-cl-eu_firmware
𝑥
≤ 1.16.18
weidmuellerie-wl-bl-ap-cl-us_firmware
𝑥
≤ 1.16.18
weidmuellerie-wlt-bl-ap-cl-us_firmware
𝑥
≤ 1.16.18
weidmuellerie-wl-vl-ap-br-cl-eu_firmware
𝑥
≤ 1.16.18
weidmuellerie-wlt-vl-ap-br-cl-eu_firmware
𝑥
≤ 1.16.18
weidmuellerie-wl-vl-ap-br-cl-us_firmware
𝑥
≤ 1.16.18
weidmuellerie-wlt-vl-ap-br-cl-us_firmware
𝑥
≤ 1.16.18
weidmuellerie-wl-bl-ap-cl-eu_firmware
𝑥
≤ 1.11.10
weidmuellerie-wlt-bl-ap-cl-eu_firmware
𝑥
≤ 1.11.10
weidmuellerie-wl-bl-ap-cl-us_firmware
𝑥
≤ 1.11.10
weidmuellerie-wlt-bl-ap-cl-us_firmware
𝑥
≤ 1.11.10
weidmuellerie-wl-vl-ap-br-cl-eu_firmware
𝑥
≤ 1.11.10
weidmuellerie-wlt-vl-ap-br-cl-eu_firmware
𝑥
≤ 1.11.10
weidmuellerie-wl-vl-ap-br-cl-us_firmware
𝑥
≤ 1.11.10
weidmuellerie-wlt-vl-ap-br-cl-us_firmware
𝑥
≤ 1.11.10
𝑥
= Vulnerable software versions