CVE-2021-40171
low-risk
Published 2021-12-15
The absence of notifications regarding an ongoing RF jamming attack in the SecuritasHome home alarm system, version HPGW-G 0.0.2.23F BG_U-ITR-F1-BD_BL.A30.20181117, allows an attacker to block legitimate traffic while not alerting the owner of the system.
Do I need to act?
-
0.38% chance of exploitation
EPSS score — low exploit probability
-
Not on CISA KEV list
No confirmed active exploitation reported to CISA
?
Patch status unknown
Check vendor advisories for fix availability and mitigation guidance
5
CVSS 5.3/10
Medium
NETWORK
/ LOW complexity
Affected Products (1)
Securitashome Alarm System Firmware
Affected Vendors
References (4)
Third Party Advisory
https://www.diva-portal.org/smash/get/diva2:1600180/FULLTEXT04.pdf
Vendor Advisory
https://www.securitashome.se/product.html/securitashome
Third Party Advisory
https://www.diva-portal.org/smash/get/diva2:1600180/FULLTEXT04.pdf
Vendor Advisory
https://www.securitashome.se/product.html/securitashome
27
/ 100
low-risk
Severity
21/34 · High
Exploitability
1/34 · Minimal
Exposure
5/34 · Minimal