CVE-2021-34591
27.04.2022, 16:15
In Bender/ebee Charge Controllers in multiple versions are prone to Local privilege Escalation. An authenticated attacker could get root access via the suid applications socat, ip udhcpc and ifplugd.Enginsight
Vendor | Product | Version |
---|---|---|
bender | cc612_firmware | 5.11.0 ≤ 𝑥 < 5.11.2 |
bender | cc612_firmware | 5.12.0 ≤ 𝑥 < 5.12.5 |
bender | cc612_firmware | 5.13.0 ≤ 𝑥 < 5.13.2 |
bender | cc612_firmware | 5.20.0 ≤ 𝑥 < 5.20.2 |
bender | icc15xx_firmware | 5.11.0 ≤ 𝑥 < 5.11.2 |
bender | icc15xx_firmware | 5.12.0 ≤ 𝑥 < 5.12.5 |
bender | icc15xx_firmware | 5.13.0 ≤ 𝑥 < 5.13.2 |
bender | icc15xx_firmware | 5.20.0 ≤ 𝑥 < 5.20.2 |
bender | icc15xx_firmware | 5.11.0 ≤ 𝑥 < 5.11.2 |
bender | icc15xx_firmware | 5.12.0 ≤ 𝑥 < 5.12.5 |
bender | icc15xx_firmware | 5.13.0 ≤ 𝑥 < 5.13.2 |
bender | icc15xx_firmware | 5.20.0 ≤ 𝑥 < 5.20.2 |
bender | icc15xx_firmware | 5.11.0 ≤ 𝑥 < 5.11.2 |
bender | icc15xx_firmware | 5.12.0 ≤ 𝑥 < 5.12.5 |
bender | icc15xx_firmware | 5.13.0 ≤ 𝑥 < 5.13.2 |
bender | icc15xx_firmware | 5.20.0 ≤ 𝑥 < 5.20.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration