CVE-2021-4242Improper Neutralization in Br270n

Severity
8.8HIGHNVD
CNA6.3
EPSS
10.5%
top 6.74%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 30

Description

A vulnerability was found in Sapido BR270n, BRC76n, GR297 and RB1732 and classified as critical. Affected by this issue is some unknown functionality of the file ip/syscmd.htm. The manipulation leads to os command injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-214592.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages8 packages

CVEListV5sapido/gr297n/a
CVEListV5sapido/br270nn/a
CVEListV5sapido/brc76nn/a
CVEListV5sapido/rb1732n/a

🔴Vulnerability Details

2
GHSA
GHSA-2gp5-q39j-fmr2: A vulnerability was found in Sapido BR270n, BRC76n, GR297 and RB1732 and classified as critical2022-11-30
CVEList
Sapido BR270n/BRC76n/GR297/RB1732 syscmd.htm os command injection2022-11-30
CVE-2021-4242 — Improper Neutralization in Br270n | cvebase