CVE-2021-33210

MEDIUM

Fimer Aurora Vision <2.97.10 - Info Disclosure

Title source: llm
STIX 2.1

Description

An issue was discovered in Fimer Aurora Vision before 2.97.10. An attacker can (in the WebUI) obtain plant information without authentication by reading the response of APIs from a kiosk view of a plant.

References (2)

Core 2

Scores

CVSS v3 4.3
EPSS 0.0075
EPSS Percentile 50.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N

Details

CWE
CWE-287
Status published
Products (1)
fimer/aurora_vision < 2.97.10
Published Nov 03, 2021
Tracked Since Feb 18, 2026