Security Flaw in SolarView Product from Contec Allows Unauthorized Access
CVE-2021-20662

7.5HIGH

Key Information:

Vendor
CVE Published:
24 February 2021

What is CVE-2021-20662?

A significant vulnerability in the SolarView Compact SV-CPT-MC310 prior to version 6.5 stems from missing authentication for a critical function. This flaw enables attackers to modify setting information without possessing the appropriate access privileges. Exploitation of this vulnerability can compromise the integrity of system configurations, posing security risks through various unspecified vectors.

Affected Version(s)

SolarView Compact SV-CPT-MC310 prior to Ver.6.5

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.