ZeroHour

CVE-2021-27446

CVSS 3.1
9.8 critical
EPSS
3%p86
Published
()
Modified
Description

The Weintek cMT product line is vulnerable to code injection, which may allow an unauthenticated remote attacker to execute commands with root privileges on the operation system.

Vendors
weintek
Products
cmt-svr-100 firmware, cmt-svr-102 firmware, cmt-svr-200 firmware, cmt-svr-202 firmware, cmt-g01 firmware, cmt-g02 firmware, cmt-g03 firmware, cmt-g04 firmware, cmt3071 firmware, cmt3072 firmware, cmt3090 firmware, cmt3103 firmware
Weakness
CWE-94
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.