Record summary

CVE-2021-38487 has a selected CVSS score of 8.8 (high).

Description

RTI Connext Professional versions 4.1 to 6.1.0, and Connext Micro versions 2.4 and later are vulnerable when an attacker sends a specially crafted packet to flood target devices with unwanted traffic. This may result in a denial-of-service condition and information exposure.

Description source: CVE List

Exploitation context

CISA SSVC decision

ExploitationNone
AutomatableYes
Technical impactPartial

CISA Coordinator · SSVC 2.0.3 · Evaluated Apr 16, 2025 · Source: CVE List

Affected products and versions

2
ProductSourceVersion rangeStatus

Default status: unaffected

CVE List4.0.0 to < 4.0.*affected
3.0.0 to < 3.0.*affected
2.4.0 to < 2.4.*affected

Default status: unaffected

CVE List4.1 to < 6.1.0affected

References

4