CVE-2021-33529

EUVD-2021-20221
In Weidmueller Industrial WLAN devices in multiple versions the usage of hard-coded cryptographic keys within the service agent binary allows for the decryption of captured traffic across the network from or to the device.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CERTVDECNA
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 56%
Affected Products (NVD)
VendorProductVersion
weidmuellerie-wl-bl-ap-cl-eu_firmware
𝑥
≤ 1.16.18
weidmuellerie-wlt-bl-ap-cl-eu_firmware
𝑥
≤ 1.16.18
weidmuellerie-wl-bl-ap-cl-us_firmware
𝑥
≤ 1.16.18
weidmuellerie-wlt-bl-ap-cl-us_firmware
𝑥
≤ 1.16.18
weidmuellerie-wl-vl-ap-br-cl-eu_firmware
𝑥
≤ 1.16.18
weidmuellerie-wlt-vl-ap-br-cl-eu_firmware
𝑥
≤ 1.16.18
weidmuellerie-wl-vl-ap-br-cl-us_firmware
𝑥
≤ 1.16.18
weidmuellerie-wlt-vl-ap-br-cl-us_firmware
𝑥
≤ 1.16.18
weidmuellerie-wl-bl-ap-cl-eu_firmware
𝑥
≤ 1.11.10
weidmuellerie-wlt-bl-ap-cl-eu_firmware
𝑥
≤ 1.11.10
weidmuellerie-wl-bl-ap-cl-us_firmware
𝑥
≤ 1.11.10
weidmuellerie-wlt-bl-ap-cl-us_firmware
𝑥
≤ 1.11.10
weidmuellerie-wl-vl-ap-br-cl-eu_firmware
𝑥
≤ 1.11.10
weidmuellerie-wlt-vl-ap-br-cl-eu_firmware
𝑥
≤ 1.11.10
weidmuellerie-wl-vl-ap-br-cl-us_firmware
𝑥
≤ 1.11.10
weidmuellerie-wlt-vl-ap-br-cl-us_firmware
𝑥
≤ 1.11.10
𝑥
= Vulnerable software versions