CVE detail
CVE-2021-23857 — CVE-2021-23857
Published 2021-10-04 · Modified 2026-06-17 · Vendor bosch · Product rexroth_indramotion_mlc_l20_firmware · Source nvd
CRITICAL
severity
CVSS-derived band
0.0123
EPSS probability
exploitation probability, 30d
66.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
Login with hash: The login routine allows the client to log in to the system not by using the password, but by using the hash of the password. Combined with CVE-2021-23858, this allows an attacker to subsequently login to the system.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References