CVE-2021-22817

A CWE-276: Incorrect Default Permissions vulnerability exists that could cause unauthorized access to the base installation directory leading to local privilege escalation. Affected Product: Harmony/Magelis iPC Series (All Versions), Vijeo Designer (All Versions prior to V6.2 SP11 Multiple HotFix 4), Vijeo Designer Basic (All Versions prior to V1.2.1)
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmuhi29d2801_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmuhi29d2801:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmusi29d2801_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmusi29d2801:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmuci29d2w01_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmuci29d2w01:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmu0i29d2001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmu0i29d2001:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmu0i29d200a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmu0i29d200a:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmuhi29d4801_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmuhi29d4801:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmusi29d4801_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmusi29d4801:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmuci29d4w01_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmuci29d4w01:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmu0i29d4001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmu0i29d4001:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmu0i29d400a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmu0i29d400a:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmu0i29di00a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmu0i29di00a:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmu0i29de00a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmu0i29de00a:-:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmphi74d2801_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmphi74d2801:-:*:*:*:*:*:*:*

Configuration 14 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmpsi74d2801_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmpsi74d2801:-:*:*:*:*:*:*:*

Configuration 15 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmp0i74d2001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmp0i74d2001:-:*:*:*:*:*:*:*

Configuration 16 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmp0i74d200a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmp0i74d200a:-:*:*:*:*:*:*:*

Configuration 17 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmphi74d4801_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmphi74d4801:-:*:*:*:*:*:*:*

Configuration 18 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmpsi74d4801_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmpsi74d4801:-:*:*:*:*:*:*:*

Configuration 19 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmp0i74d4001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmp0i74d4001:-:*:*:*:*:*:*:*

Configuration 20 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmp0i74d400a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmp0i74d400a:-:*:*:*:*:*:*:*

Configuration 21 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmp0i74di00a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmp0i74di00a:-:*:*:*:*:*:*:*

Configuration 22 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmp0i74de00a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmp0i74de00a:-:*:*:*:*:*:*:*

Configuration 23 (hide)

AND
cpe:2.3:o:schneider-electric:hmibscea53d1l01_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibscea53d1l01:-:*:*:*:*:*:*:*

Configuration 24 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmoma5ddf10l_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmoma5ddf10l:-:*:*:*:*:*:*:*

Configuration 25 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmoma5dd1e01_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmoma5dd1e01:-:*:*:*:*:*:*:*

Configuration 26 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmoma5dd1101_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmoma5dd1101:-:*:*:*:*:*:*:*

Configuration 27 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmo0a5ddf10a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmo0a5ddf10a:-:*:*:*:*:*:*:*

Configuration 28 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmo0a5ddf101_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmo0a5ddf101:-:*:*:*:*:*:*:*

Configuration 29 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmo0a5dd1001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmo0a5dd1001:-:*:*:*:*:*:*:*

Configuration 30 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmiea5dd1e01_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmiea5dd1e01:-:*:*:*:*:*:*:*

Configuration 31 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmiea5dd110l_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmiea5dd110l:-:*:*:*:*:*:*:*

Configuration 32 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmiea5dd1101_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmiea5dd1101:-:*:*:*:*:*:*:*

Configuration 33 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmiea5dd100a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmiea5dd100a:-:*:*:*:*:*:*:*

Configuration 34 (hide)

AND
cpe:2.3:o:schneider-electric:hmibmiea5dd1001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibmiea5dd1001:-:*:*:*:*:*:*:*

Configuration 35 (hide)

AND
cpe:2.3:o:schneider-electric:hmibscea53d1l0t_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibscea53d1l0t:-:*:*:*:*:*:*:*

Configuration 36 (hide)

AND
cpe:2.3:o:schneider-electric:hmibscea53d1l0a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:hmibscea53d1l0a:-:*:*:*:*:*:*:*

Configuration 37 (hide)

OR cpe:2.3:a:schneider-electric:vijeo_designer:*:*:*:*:basic:*:*:*
cpe:2.3:a:schneider-electric:vijeo_designer:*:*:*:*:-:*:*:*
cpe:2.3:a:schneider-electric:vijeo_designer:6.2:-:*:*:-:*:*:*
cpe:2.3:a:schneider-electric:vijeo_designer:6.2:sp1:*:*:-:*:*:*
cpe:2.3:a:schneider-electric:vijeo_designer:6.2:sp10:*:*:-:*:*:*
cpe:2.3:a:schneider-electric:vijeo_designer:6.2:sp11:*:*:-:*:*:*
cpe:2.3:a:schneider-electric:vijeo_designer:6.2:sp2:*:*:-:*:*:*
cpe:2.3:a:schneider-electric:vijeo_designer:6.2:sp3.1:*:*:-:*:*:*
cpe:2.3:a:schneider-electric:vijeo_designer:6.2:sp5.1:*:*:-:*:*:*
cpe:2.3:a:schneider-electric:vijeo_designer:6.2:sp6:*:*:-:*:*:*
cpe:2.3:a:schneider-electric:vijeo_designer:6.2:sp7:*:*:-:*:*:*
cpe:2.3:a:schneider-electric:vijeo_designer:6.2:sp8:*:*:-:*:*:*
cpe:2.3:a:schneider-electric:vijeo_designer:6.2:sp9:*:*:-:*:*:*

History

No history.

Information

Published : 2022-02-09 23:15

Updated : 2024-02-28 19:09


NVD link : CVE-2021-22817

Mitre link : CVE-2021-22817

CVE.ORG link : CVE-2021-22817


JSON object : View

Products Affected

schneider-electric

  • hmibmiea5dd100a_firmware
  • hmibscea53d1l01_firmware
  • hmibmp0i74d4001
  • hmibmusi29d4801_firmware
  • hmibmu0i29d4001
  • hmibmp0i74de00a_firmware
  • hmibmoma5ddf10l_firmware
  • hmibmo0a5dd1001
  • hmibmiea5dd1e01
  • hmibmoma5dd1101_firmware
  • hmibmo0a5ddf101_firmware
  • hmibscea53d1l0t
  • hmibmp0i74di00a
  • hmibmoma5dd1e01
  • hmibmu0i29d2001
  • hmibmu0i29d400a_firmware
  • hmibmiea5dd1001_firmware
  • hmibmiea5dd110l
  • hmibmu0i29d2001_firmware
  • hmibmu0i29de00a
  • hmibmphi74d2801_firmware
  • hmibmusi29d2801
  • hmibmu0i29d400a
  • hmibmu0i29di00a
  • hmibmp0i74d2001
  • hmibmp0i74d4001_firmware
  • hmibmoma5dd1e01_firmware
  • hmibmp0i74di00a_firmware
  • hmibmoma5ddf10l
  • hmibmiea5dd100a
  • hmibmo0a5dd1001_firmware
  • hmibmiea5dd1e01_firmware
  • hmibmp0i74de00a
  • hmibmu0i29d200a_firmware
  • hmibmiea5dd1001
  • hmibmpsi74d2801
  • hmibmpsi74d4801
  • vijeo_designer
  • hmibmpsi74d2801_firmware
  • hmibmuhi29d2801
  • hmibmp0i74d2001_firmware
  • hmibmuhi29d2801_firmware
  • hmibmuhi29d4801
  • hmibmphi74d4801_firmware
  • hmibmoma5dd1101
  • hmibmuhi29d4801_firmware
  • hmibmiea5dd110l_firmware
  • hmibmu0i29de00a_firmware
  • hmibmp0i74d200a
  • hmibscea53d1l01
  • hmibmuci29d2w01_firmware
  • hmibmusi29d2801_firmware
  • hmibmu0i29d200a
  • hmibscea53d1l0a_firmware
  • hmibmuci29d2w01
  • hmibmuci29d4w01
  • hmibmuci29d4w01_firmware
  • hmibmpsi74d4801_firmware
  • hmibmphi74d2801
  • hmibmp0i74d400a_firmware
  • hmibmiea5dd1101
  • hmibmo0a5ddf10a_firmware
  • hmibmo0a5ddf101
  • hmibscea53d1l0t_firmware
  • hmibmiea5dd1101_firmware
  • hmibmu0i29di00a_firmware
  • hmibmusi29d4801
  • hmibscea53d1l0a
  • hmibmphi74d4801
  • hmibmu0i29d4001_firmware
  • hmibmp0i74d200a_firmware
  • hmibmo0a5ddf10a
  • hmibmp0i74d400a
CWE
CWE-276

Incorrect Default Permissions