CVE-2021-20677

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
26/03/2021
Last modified:
02/04/2021

Description

UNIVERGE Aspire series PBX (UNIVERGE Aspire WX from 1.00 to 3.51, UNIVERGE Aspire UX from 1.00 to 9.70, UNIVERGE SV9100 from 1.00 to 10.70, and SL2100 from 1.00 to 3.00) allows a remote authenticated attacker to cause system down and a denial of service (DoS) condition by sending a specially crafted command.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:necplatforms:univerge_aspire_wx_firmware:*:*:*:*:*:*:*:* 1.00 (including) 3.51 (including)
cpe:2.3:h:necplatforms:univerge_aspire_wx:-:*:*:*:*:*:*:*
cpe:2.3:o:necplatforms:univerge_aspire_ux_firmware:*:*:*:*:*:*:*:* 1.00 (including) 9.70 (including)
cpe:2.3:h:necplatforms:univerge_aspire_ux:-:*:*:*:*:*:*:*
cpe:2.3:o:necplatforms:univerge_sv9100_firmware:*:*:*:*:*:*:*:* 1.00 (including) 10.70 (including)
cpe:2.3:h:necplatforms:univerge_sv9100:-:*:*:*:*:*:*:*
cpe:2.3:o:necplatforms:sl2100_firmware:*:*:*:*:*:*:*:* 1.00 (including) 3.00 (including)
cpe:2.3:h:necplatforms:sl2100:-:*:*:*:*:*:*:*