Record summary

CVE-2021-29003 has a selected CVSS score of 9.8 (critical); EIP currently links 1 catalogued exploit and 1 repository PoC.

Description

Genexis PLATINUM 4410 2.1 P4410-V2-1.28 devices allow remote attackers to execute arbitrary code via shell metacharacters to sys_config_valid.xgi, as demonstrated by the sys_config_valid.xgi?exeshell=%60telnetd%20%26%60 URI.

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Jun 1, 2021 · VulnCheck
Reported exploitation
Observed · VulnCheck

Available material

Catalogued exploits
1
Repository PoCs
1

Affected products and versions

1
ProductSourceVersion rangeStatus
VulnCheckVersion data not supplied

Proofs of concept

2

Catalogued exploits

ExploitDBGenexis PLATINUM 4410 2.1 P4410-V2-1.28 - RCEExploitDB exploitby Jay SharmaNot analyzed1 file
ExploitDB

PoC details

Repository PoCs

GitHubjaysharma786/CVE-2021-29003Repository PoCby jaysharma786Stars: 0Not analyzed1 file

401 B

GitHub

PoC details

References

3