Embedded - NET+OS Modules - RomPager - Evaluation of Security Vulnerability – VU#561444 Expanded info on CVE-2014-9222, CVE-2014-9223

Overview
Many Digi products contain and use the RomPager by Allegrosoft web server technology. It has come to our attention that this embedded web server, which is used for management of our devices contains what we have defined as a critical vulnerability. We urge any customer who may have one of these products where the administrative webserver is available on non-secure networks to either upgrade the firmware to a patched version or to disable the web server for management of these devices.


Affected Products
NET+OS Modules

Embedded - NET+OS Module Firmware Downloads


 

Product Family Part Number Description Link to upgrade
Connect ME 9210 DC-ME-Y401-C Connect ME 9210 2/8 -C Download
  DC-ME-Y401-C-B Connect ME 9210 2/8 -C (50) Download
  DC-ME-Y401-JT Connect ME 9210 2/8 JTAG Download
  DC-ME-Y402-C Connect ME 9210 4/8 -C Download
  DC-ME-Y402-C-B Connect ME 9210 4/8 -C (50) Download
ConnectCore 9P CC-9P-9215-NET CC9P 9215 NET+OS JumpStart Kit Download
  CC-9P-V502-C CC 9P 9215 4/8 NET+OS no RJ Download
  CC-9P-V502-C-B CC 9P 9215 4/8 NET+OS no RJ (25) Download
  CC-9P-V502-ZA-C CC 9P 9215 4/8 NET+OS ENET RJ45 Download
  CC-9P-V502-ZA-C-B CC 9P 9215 4/8 NET+OS ENET RJ45 (25) Download
  CC-9P-V513-C CC 9P 9215 8/16MB,NET+OS,no RJ Download
  CC-9P-V513-C-B CC 9P 9215 8/16MB,NET+OS,no RJ (25) Download
  CC-9P-V524-C CC 9P 9215 16/32 NET+OS no ENET Download
  CC-9P-V524-C-B CC 9P 9215 16/32 NET+OS no ENET (25) Download
Connect ME 2MB DC-ME-01T-C Connect ME CF/W Download
  DC-ME-01T-C-10 Connect ME CF/W (10) Download
  DC-ME-01T-C-50 Connect ME CF/W (50) Download
Connect ME 4MB DC-ME4-01T-C Connect ME -C 4MB Flash Download
  DC-ME4-01T-C-10 Connect ME -C 4MB Flash (10) Download
  DC-ME4-01T-C-50 Connect ME -C 4MB Flash (50) Download
  DC-ME4-01T-CC Connect ME -S 4MB CC (50) Download
  DC-ME4-01T-CC-1 Connect ME -S 4MB CC RMA Download
Last updated: Aug 19, 2025

Filed Under

EmbeddedSecurity

Recently Viewed

No recently viewed articles

Did you find this article helpful?