CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.2. See the original NVD description below for full technical details.
CVE
CVE-2021-37292
Severity
HIGH
CVSS
7.2
EPSS
6.72%
Original NVD Description
An Access Control vulnerability exists in KevinLAB Inc Building Energy Management System 4ST BEMS 1.0.0 due to an undocumented backdoor account. A malicious user can log in using the backdor account with admin highest privileges and obtain system control.
Related CVEs
Other vulnerabilities affecting the same vendor(s)