CVE-2021-3458
6.1 MEDIUMThe Motorola MM1000 device configuration portal can be accessed without authentication, which could allow adapter settings to be modified
Published: 2021-08-17 · Last updated: 2026-06-17
Severity and scoring
- CVSS
- 6.1 MEDIUM
- Vector
- CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
- CWE
- CWE-287
Affected products
| Vendor | Product |
|---|---|
| motorola | mm1000_firmware |
Description
The Motorola MM1000 device configuration portal can be accessed without authentication, which could allow adapter settings to be modified.
Source: NVD
References
Related CVEs
Same vendor
- CVE-2021-3459 — A privilege escalation vulnerability was reported in the MM1000 device configuration web server, which could allow privileged shell acces... (6.8 MEDIUM)
- CVE-2021-3460 — The Motorola MH702x devices, prior to version 2.0.0.301, do not properly verify the server certificate during communication with the supp... (8.1 HIGH)
Same CWE
- CVE-2026-48780 — Forem is open source software for building communities (8.2 HIGH)
- CVE-2026-48114 — Metacat is data repository software that helps researchers preserve, share, and discover data (9.8 CRITICAL)
- CVE-2026-12183 — Nefteprodukttekhnika BUK TS-G Gas Station Automation System 2.9.1 through 2.10.2 on Linux contains an Improper Authentication vulnerabili... (9.8 CRITICAL)
- CVE-2026-50623 — An authentication bypass vulnerability exists in the OAuth2 TokenIntrospectionService in Apache CXF (4.8 MEDIUM)
- CVE-2026-48611 — Improper authentication checks in the OAuth implementation allow account hijacking even when OAuth is not configured or enabled leading t... (9.8 CRITICAL)