CVE-2021-22734
Severity
7.2HIGH
EPSS
0.8%
top 25.22%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 26
Latest updateMay 24
Description
Improper Verification of Cryptographic Signature vulnerability exists in homeLYnk (Wiser For KNX) and spaceLYnk V2.60 and prior which could cause remote code execution when an attacker loads unauthorized code.
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:HExploitability: 1.2 | Impact: 5.9
Affected Packages3 packages
▶CVEListV5homelynk_(wiser_for_knx)_and_spacelynk_v2.60_and_priorhomeLYnk (Wiser For KNX) and spaceLYnk V2.60 and prior
🔴Vulnerability Details
2GHSA▶
GHSA-hxjr-hwrw-hrv5: Improper Verification of Cryptographic Signature vulnerability exists in homeLYnk (Wiser For KNX) and spaceLYnk V2↗2022-05-24
CVEList▶
CVE-2021-22734: Improper Verification of Cryptographic Signature vulnerability exists in homeLYnk (Wiser For KNX) and spaceLYnk V2↗2021-05-26