Lucene search

K
nvd[email protected]NVD:CVE-2021-34125
HistoryMar 09, 2023 - 11:15 p.m.

CVE-2021-34125

2023-03-0923:15:10
web.nvd.nist.gov
3
cve-2021-34125
yuneec mantis q
px4-autopilot
vulnerability
sensitive information
nuttx commands

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

AI Score

7.5

Confidence

High

EPSS

0.003

Percentile

65.7%

An issue discovered in Yuneec Mantis Q and PX4-Autopilot v 1.11.3 and below allow attacker to gain access to sensitive information via various nuttx commands.

Affected configurations

Nvd
Node
dronecodepx4_drone_autopilotRange1.11.3
Node
yuneecmantis_qMatch-
AND
yuneecmantis_q_firmwareMatch-
VendorProductVersionCPE
dronecodepx4_drone_autopilot*cpe:2.3:a:dronecode:px4_drone_autopilot:*:*:*:*:*:*:*:*
yuneecmantis_q-cpe:2.3:h:yuneec:mantis_q:-:*:*:*:*:*:*:*
yuneecmantis_q_firmware-cpe:2.3:o:yuneec:mantis_q_firmware:-:*:*:*:*:*:*:*

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

AI Score

7.5

Confidence

High

EPSS

0.003

Percentile

65.7%

Related for NVD:CVE-2021-34125