S4E just found a high top 10 tcp port service scan
critical·Product Based Web Vulnerabilities·Updated Jan 3, 2024

CVE-2021-40859 Scanner

CVE-2021-40859 scanner - Backdoor vulnerability in Auerswald COMpact 5500R

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
0
Times Used
by S4E users
0
Assets Scanned
domains & IPs
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2021-40859
9.8
CVSS

Backdoors were discovered in Auerswald COMpact 5500R 7.8A and 8.0B devices, that allow attackers with access to the web based management application full administrative access to the device.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
n/aby n/a
n/a
Updated Aug 19, 2026View on NVD →
Detail

The Auerswald COMpact 5500R is a communication device used in businesses and offices as a private branch exchange (PBX) system. It allows for the centralization of communication processes, including phone calls, voicemail, and messaging. The device is commonly used as a cost-effective solution for small to medium-sized enterprises.

Recently, a critical vulnerability (CVE-2021-40859) was discovered in the Auerswald COMpact 5500R device versions 7.8A and 8.0B. The vulnerability allows attackers with web-based management access to gain full administrative control over the device. Attackers can exploit this vulnerability remotely, potentially causing significant damage to businesses and their communication processes.

When exploited, this vulnerability can lead to unauthorized access, which may result in attackers intercepting or tampering with sensitive communication data. This could include confidential messages and phone calls, result in data loss, and negatively impact business continuity. Furthermore, the attacker can create backdoors or plant malicious code, allowing them to maintain access to the system long after the initial attack.

With the ever-increasing number of cybersecurity threats, it is crucial to be proactive and stay informed about vulnerabilities in your digital assets. Thanks to the pro features of the s4e.io platform, individuals and businesses can quickly and easily learn about potential vulnerabilities in their devices and networks. By utilizing this service, businesses can safeguard themselves against potential cyberattacks proactively.

 

REFERENCES

Solution Advice

To protect against this vulnerability, it is crucial to take the following precautions:

  • Immediately update to the latest version of the COMpact 5500R firmware.
  • Restrict web-based management access to trusted network interfaces only.
  • Implement strong and unique passwords.
  • Disable any unused services on the device.
  • Monitor the device's logs regularly for any indications of unauthorized access.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.