CVE-2020-12030
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
29/09/2021
Last modified:
08/07/2022
Description
There is a flaw in the code used to configure the internal gateway firewall when the gateway's VLAN feature is enabled. If a user enables the VLAN setting, the internal gateway firewall becomes disabled resulting in exposure of all ports used by the gateway.
Impact
Base Score 3.x
10.00
Severity 3.x
CRITICAL
Base Score 2.0
6.80
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:emerson:wireless_1410_gateway_firmware:*:*:*:*:*:*:*:* | 4.6.43 (including) | 4.7.84 (including) |
| cpe:2.3:h:emerson:wireless_1410_gateway:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:emerson:wireless_1420_gateway_firmware:*:*:*:*:*:*:*:* | 4.6.43 (including) | 4.7.84 (including) |
| cpe:2.3:h:emerson:wireless_1420_gateway:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:emerson:wireless_1552wu_gateway_firmware:*:*:*:*:*:*:*:* | 4.6.43 (including) | 4.7.84 (including) |
| cpe:2.3:h:emerson:wireless_1552wu_gateway:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



