CVE-2021-22735

CWE-3473 documents3 sources
Severity
7.2HIGH
EPSS
0.8%
top 25.22%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 26
Latest updateMay 24

Description

Improper Verification of Cryptographic Signature vulnerability exists inhomeLYnk (Wiser For KNX) and spaceLYnk V2.60 and prior which could allow remote code execution when unauthorized code is copied to the device.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:HExploitability: 1.2 | Impact: 5.9

Affected Packages3 packages

CVEListV5homelynk_(wiser_for_knx)_and_spacelynk_v2.60_and_priorhomeLYnk (Wiser For KNX) and spaceLYnk V2.60 and prior

🔴Vulnerability Details

2
GHSA
GHSA-mf6w-xpm7-q832: Improper Verification of Cryptographic Signature vulnerability exists inhomeLYnk (Wiser For KNX) and spaceLYnk V22022-05-24
CVEList
CVE-2021-22735: Improper Verification of Cryptographic Signature vulnerability exists inhomeLYnk (Wiser For KNX) and spaceLYnk V22021-05-26
CVE-2021-22735 (HIGH CVSS 7.2) | Improper Verification of Cryptograp | cvebase.io