RULE(RULE ID:337209)

Rule General Information
Release Date: 2022-12-05
Rule Name: KevinLAB BEMS Backdoor Detection (CVE-2021-37292)
Severity:
CVE ID:
Rule Protection Details
Description: An Access Control vulnerability exists in KevinLAB Inc Building Energy Management System 4ST BEMS 1.0.0 due to an undocumented backdoor account. A malicious user can log in using the backdor account with admin highest privileges and obtain system control.
Impact: Backdoor is a method of bypassing authentication or system encryption to gain access to a system. If a backdoor is discovered, attackers can use the backdoor to execute code or upload files on the infected server.
Affected OS: Windows, Linux, Others
Reference: http://www.kevinlab.com
https://www.zeroscience.mk/en/vulnerabilities/
Solutions
Refer to the announcement or patch by the vendor: http://www.kevinlab.com