Vulnerabilities > Weidmueller > IE WLT VL AP BR CL US Firmware > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-06-25 CVE-2021-33529 Use of Hard-coded Credentials vulnerability in Weidmueller products
In Weidmueller Industrial WLAN devices in multiple versions the usage of hard-coded cryptographic keys within the service agent binary allows for the decryption of captured traffic across the network from or to the device.
network
low complexity
weidmueller CWE-798
5.0
2021-06-25 CVE-2021-33535 Use of Externally-Controlled Format String vulnerability in Weidmueller products
In Weidmueller Industrial WLAN devices in multiple versions an exploitable format string vulnerability exists in the iw_console conio_writestr functionality.
network
low complexity
weidmueller CWE-134
6.5
2021-06-25 CVE-2021-33536 Integer Underflow (Wrap or Wraparound) vulnerability in Weidmueller products
In Weidmueller Industrial WLAN devices in multiple versions an exploitable denial-of-service vulnerability exists in ServiceAgent functionality.
network
low complexity
weidmueller CWE-191
5.0
2021-06-25 CVE-2021-33537 Classic Buffer Overflow vulnerability in Weidmueller products
In Weidmueller Industrial WLAN devices in multiple versions an exploitable remote code execution vulnerability exists in the iw_webs configuration parsing functionality.
network
low complexity
weidmueller CWE-120
6.5
2021-06-25 CVE-2021-33539 Improper Authentication vulnerability in Weidmueller products
In Weidmueller Industrial WLAN devices in multiple versions an exploitable authentication bypass vulnerability exists in the hostname processing.
network
low complexity
weidmueller CWE-287
6.5