CVE-2021-31887

Severity
8.8HIGH
EPSS
3.4%
top 12.59%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 9
Latest updateMay 24

Description

A vulnerability has been identified in APOGEE MBC (PPC) (BACnet) (All versions), APOGEE MBC (PPC) (P2 Ethernet) (All versions), APOGEE MEC (PPC) (BACnet) (All versions), APOGEE MEC (PPC) (P2 Ethernet) (All versions), APOGEE PXC Compact (BACnet) (All versions = V2.3 and = V2.3 and = V2.3 and = V2.3 and = V2.3 and = V2.3 and = V2.3 and = V2.3 and = V2.3 and = V2.3 and = V2.3 and = V2.3 and = V2.3 and < V6.30.016), Nucleus NET (All versions), Nucleus ReadyStart V3 (All versions < V2017.02.4), Nucle

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages44 packages

CVEListV5siemens/apogee_pxc_compact_(bacnet)All versions < V3.5.4
CVEListV5siemens/apogee_pxc_modular_(bacnet)All versions < V3.5.4
CVEListV5siemens/apogee_mbc_(ppc)_(bacnet)All versions
CVEListV5siemens/apogee_mec_(ppc)_(bacnet)All versions
CVEListV5siemens/talon_tc_compact_(bacnet)All versions < V3.5.4

🔴Vulnerability Details

2
GHSA
GHSA-q5r7-v53q-5pgx: A vulnerability has been identified in APOGEE MBC (PPC) (BACnet) (All versions), APOGEE MBC (PPC) (P2 Ethernet) (All versions), APOGEE MEC (PPC) (BACn2022-05-24
CVEList
CVE-2021-31887: A vulnerability has been identified in APOGEE MBC (PPC) (BACnet) (All versions), APOGEE MBC (PPC) (P2 Ethernet) (All versions), APOGEE MEC (PPC) (BACn2021-11-09
CVE-2021-31887 (HIGH CVSS 8.8) | A vulnerability has been identified | cvebase.io