// For flags

CVE-2021-22817

 

Severity Score

7.8
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

A CWE-276: Incorrect Default Permissions vulnerability exists that could cause unauthorized access to the base installation directory leading to local privilege escalation. Affected Product: Harmony/Magelis iPC Series (All Versions), Vijeo Designer (All Versions prior to V6.2 SP11 Multiple HotFix 4), Vijeo Designer Basic (All Versions prior to V1.2.1)

Una CWE-276: Se presenta una vulnerabilidad de Permisos incorrectos por Defecto que podría causar un acceso no autorizado al directorio de instalación base conllevando a una escalada de privilegios local. Producto afectado: Harmony/Magelis iPC Series (todas las versiones), Vijeo Designer (todas las versiones anteriores a V6.2 SP11 Multiple HotFix 4), Vijeo Designer Basic (todas las versiones anteriores a V1.2.1)

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Local
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2021-01-06 CVE Reserved
  • 2022-02-09 CVE Published
  • 2023-03-08 EPSS Updated
  • 2024-08-03 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-276: Incorrect Default Permissions
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Schneider-electric
Search vendor "Schneider-electric"
Hmibmuhi29d2801 Firmware
Search vendor "Schneider-electric" for product "Hmibmuhi29d2801 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmuhi29d2801
Search vendor "Schneider-electric" for product "Hmibmuhi29d2801"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmusi29d2801 Firmware
Search vendor "Schneider-electric" for product "Hmibmusi29d2801 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmusi29d2801
Search vendor "Schneider-electric" for product "Hmibmusi29d2801"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmuci29d2w01 Firmware
Search vendor "Schneider-electric" for product "Hmibmuci29d2w01 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmuci29d2w01
Search vendor "Schneider-electric" for product "Hmibmuci29d2w01"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmu0i29d2001 Firmware
Search vendor "Schneider-electric" for product "Hmibmu0i29d2001 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmu0i29d2001
Search vendor "Schneider-electric" for product "Hmibmu0i29d2001"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmu0i29d200a Firmware
Search vendor "Schneider-electric" for product "Hmibmu0i29d200a Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmu0i29d200a
Search vendor "Schneider-electric" for product "Hmibmu0i29d200a"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmuhi29d4801 Firmware
Search vendor "Schneider-electric" for product "Hmibmuhi29d4801 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmuhi29d4801
Search vendor "Schneider-electric" for product "Hmibmuhi29d4801"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmusi29d4801 Firmware
Search vendor "Schneider-electric" for product "Hmibmusi29d4801 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmusi29d4801
Search vendor "Schneider-electric" for product "Hmibmusi29d4801"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmuci29d4w01 Firmware
Search vendor "Schneider-electric" for product "Hmibmuci29d4w01 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmuci29d4w01
Search vendor "Schneider-electric" for product "Hmibmuci29d4w01"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmu0i29d4001 Firmware
Search vendor "Schneider-electric" for product "Hmibmu0i29d4001 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmu0i29d4001
Search vendor "Schneider-electric" for product "Hmibmu0i29d4001"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmu0i29d400a Firmware
Search vendor "Schneider-electric" for product "Hmibmu0i29d400a Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmu0i29d400a
Search vendor "Schneider-electric" for product "Hmibmu0i29d400a"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmu0i29di00a Firmware
Search vendor "Schneider-electric" for product "Hmibmu0i29di00a Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmu0i29di00a
Search vendor "Schneider-electric" for product "Hmibmu0i29di00a"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmu0i29de00a Firmware
Search vendor "Schneider-electric" for product "Hmibmu0i29de00a Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmu0i29de00a
Search vendor "Schneider-electric" for product "Hmibmu0i29de00a"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmphi74d2801 Firmware
Search vendor "Schneider-electric" for product "Hmibmphi74d2801 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmphi74d2801
Search vendor "Schneider-electric" for product "Hmibmphi74d2801"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmpsi74d2801 Firmware
Search vendor "Schneider-electric" for product "Hmibmpsi74d2801 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmpsi74d2801
Search vendor "Schneider-electric" for product "Hmibmpsi74d2801"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmp0i74d2001 Firmware
Search vendor "Schneider-electric" for product "Hmibmp0i74d2001 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmp0i74d2001
Search vendor "Schneider-electric" for product "Hmibmp0i74d2001"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmp0i74d200a Firmware
Search vendor "Schneider-electric" for product "Hmibmp0i74d200a Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmp0i74d200a
Search vendor "Schneider-electric" for product "Hmibmp0i74d200a"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmphi74d4801 Firmware
Search vendor "Schneider-electric" for product "Hmibmphi74d4801 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmphi74d4801
Search vendor "Schneider-electric" for product "Hmibmphi74d4801"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmpsi74d4801 Firmware
Search vendor "Schneider-electric" for product "Hmibmpsi74d4801 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmpsi74d4801
Search vendor "Schneider-electric" for product "Hmibmpsi74d4801"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmp0i74d4001 Firmware
Search vendor "Schneider-electric" for product "Hmibmp0i74d4001 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmp0i74d4001
Search vendor "Schneider-electric" for product "Hmibmp0i74d4001"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmp0i74d400a Firmware
Search vendor "Schneider-electric" for product "Hmibmp0i74d400a Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmp0i74d400a
Search vendor "Schneider-electric" for product "Hmibmp0i74d400a"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmp0i74di00a Firmware
Search vendor "Schneider-electric" for product "Hmibmp0i74di00a Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmp0i74di00a
Search vendor "Schneider-electric" for product "Hmibmp0i74di00a"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmp0i74de00a Firmware
Search vendor "Schneider-electric" for product "Hmibmp0i74de00a Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmp0i74de00a
Search vendor "Schneider-electric" for product "Hmibmp0i74de00a"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibscea53d1l01 Firmware
Search vendor "Schneider-electric" for product "Hmibscea53d1l01 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibscea53d1l01
Search vendor "Schneider-electric" for product "Hmibscea53d1l01"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmoma5ddf10l Firmware
Search vendor "Schneider-electric" for product "Hmibmoma5ddf10l Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmoma5ddf10l
Search vendor "Schneider-electric" for product "Hmibmoma5ddf10l"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmoma5dd1e01 Firmware
Search vendor "Schneider-electric" for product "Hmibmoma5dd1e01 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmoma5dd1e01
Search vendor "Schneider-electric" for product "Hmibmoma5dd1e01"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmoma5dd1101 Firmware
Search vendor "Schneider-electric" for product "Hmibmoma5dd1101 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmoma5dd1101
Search vendor "Schneider-electric" for product "Hmibmoma5dd1101"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmo0a5ddf10a Firmware
Search vendor "Schneider-electric" for product "Hmibmo0a5ddf10a Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmo0a5ddf10a
Search vendor "Schneider-electric" for product "Hmibmo0a5ddf10a"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmo0a5ddf101 Firmware
Search vendor "Schneider-electric" for product "Hmibmo0a5ddf101 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmo0a5ddf101
Search vendor "Schneider-electric" for product "Hmibmo0a5ddf101"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmo0a5dd1001 Firmware
Search vendor "Schneider-electric" for product "Hmibmo0a5dd1001 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmo0a5dd1001
Search vendor "Schneider-electric" for product "Hmibmo0a5dd1001"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmiea5dd1e01 Firmware
Search vendor "Schneider-electric" for product "Hmibmiea5dd1e01 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmiea5dd1e01
Search vendor "Schneider-electric" for product "Hmibmiea5dd1e01"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmiea5dd110l Firmware
Search vendor "Schneider-electric" for product "Hmibmiea5dd110l Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmiea5dd110l
Search vendor "Schneider-electric" for product "Hmibmiea5dd110l"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmiea5dd1101 Firmware
Search vendor "Schneider-electric" for product "Hmibmiea5dd1101 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmiea5dd1101
Search vendor "Schneider-electric" for product "Hmibmiea5dd1101"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmiea5dd100a Firmware
Search vendor "Schneider-electric" for product "Hmibmiea5dd100a Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmiea5dd100a
Search vendor "Schneider-electric" for product "Hmibmiea5dd100a"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibmiea5dd1001 Firmware
Search vendor "Schneider-electric" for product "Hmibmiea5dd1001 Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibmiea5dd1001
Search vendor "Schneider-electric" for product "Hmibmiea5dd1001"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibscea53d1l0t Firmware
Search vendor "Schneider-electric" for product "Hmibscea53d1l0t Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibscea53d1l0t
Search vendor "Schneider-electric" for product "Hmibscea53d1l0t"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Hmibscea53d1l0a Firmware
Search vendor "Schneider-electric" for product "Hmibscea53d1l0a Firmware"
*-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Hmibscea53d1l0a
Search vendor "Schneider-electric" for product "Hmibscea53d1l0a"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Vijeo Designer
Search vendor "Schneider-electric" for product "Vijeo Designer"
< 1.2.1
Search vendor "Schneider-electric" for product "Vijeo Designer" and version " < 1.2.1"
basic
Affected
Schneider-electric
Search vendor "Schneider-electric"
Vijeo Designer
Search vendor "Schneider-electric" for product "Vijeo Designer"
< 6.2
Search vendor "Schneider-electric" for product "Vijeo Designer" and version " < 6.2"
-
Affected
Schneider-electric
Search vendor "Schneider-electric"
Vijeo Designer
Search vendor "Schneider-electric" for product "Vijeo Designer"
6.2
Search vendor "Schneider-electric" for product "Vijeo Designer" and version "6.2"
-
Affected
Schneider-electric
Search vendor "Schneider-electric"
Vijeo Designer
Search vendor "Schneider-electric" for product "Vijeo Designer"
6.2
Search vendor "Schneider-electric" for product "Vijeo Designer" and version "6.2"
sp1
Affected
Schneider-electric
Search vendor "Schneider-electric"
Vijeo Designer
Search vendor "Schneider-electric" for product "Vijeo Designer"
6.2
Search vendor "Schneider-electric" for product "Vijeo Designer" and version "6.2"
sp10
Affected
Schneider-electric
Search vendor "Schneider-electric"
Vijeo Designer
Search vendor "Schneider-electric" for product "Vijeo Designer"
6.2
Search vendor "Schneider-electric" for product "Vijeo Designer" and version "6.2"
sp11
Affected
Schneider-electric
Search vendor "Schneider-electric"
Vijeo Designer
Search vendor "Schneider-electric" for product "Vijeo Designer"
6.2
Search vendor "Schneider-electric" for product "Vijeo Designer" and version "6.2"
sp2
Affected
Schneider-electric
Search vendor "Schneider-electric"
Vijeo Designer
Search vendor "Schneider-electric" for product "Vijeo Designer"
6.2
Search vendor "Schneider-electric" for product "Vijeo Designer" and version "6.2"
sp3.1
Affected
Schneider-electric
Search vendor "Schneider-electric"
Vijeo Designer
Search vendor "Schneider-electric" for product "Vijeo Designer"
6.2
Search vendor "Schneider-electric" for product "Vijeo Designer" and version "6.2"
sp5.1
Affected
Schneider-electric
Search vendor "Schneider-electric"
Vijeo Designer
Search vendor "Schneider-electric" for product "Vijeo Designer"
6.2
Search vendor "Schneider-electric" for product "Vijeo Designer" and version "6.2"
sp6
Affected
Schneider-electric
Search vendor "Schneider-electric"
Vijeo Designer
Search vendor "Schneider-electric" for product "Vijeo Designer"
6.2
Search vendor "Schneider-electric" for product "Vijeo Designer" and version "6.2"
sp7
Affected
Schneider-electric
Search vendor "Schneider-electric"
Vijeo Designer
Search vendor "Schneider-electric" for product "Vijeo Designer"
6.2
Search vendor "Schneider-electric" for product "Vijeo Designer" and version "6.2"
sp8
Affected
Schneider-electric
Search vendor "Schneider-electric"
Vijeo Designer
Search vendor "Schneider-electric" for product "Vijeo Designer"
6.2
Search vendor "Schneider-electric" for product "Vijeo Designer" and version "6.2"
sp9
Affected