CVE-2021-22735

HIGH

homeLYnk Wiser For KNX <V2.60 - RCE

Title source: llm
STIX 2.1

Description

Improper Verification of Cryptographic Signature vulnerability exists inhomeLYnk (Wiser For KNX) and spaceLYnk V2.60 and prior which could allow remote code execution when unauthorized code is copied to the device.

References (1)

Core 1
Core References

Scores

CVSS v3 7.2
EPSS 0.0084
EPSS Percentile 75.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-347
Status published
Products (2)
schneider-electric/homelynk_firmware < 2.6.0
schneider-electric/spacelynk_firmware < 2.6.0
Published May 26, 2021
Tracked Since Feb 18, 2026