CVE-2021-36356

CRITICAL EXPLOITED IN THE WILD NUCLEI

Kramer VIAware < 2021-08 - Remote Code Execution via ajaxPages/writeBrowseFilePathAjax.php

Title source: llm
STIX 2.1

Exploitation Summary

CVE-2021-36356 has been observed exploited in the wild (reported by VulnCheck KEV, InTheWild.io). EIP tracks 2 public exploits from researchers including sharkmoos. A Nuclei detection template is also available.

AI-analyzed exploit summary This exploit leverages CVE-2021-36356 to achieve remote code execution as root on KRAMER VIAware by uploading a PHP web shell and executing commands via sudo rpm with Lua code injection.

Description

KRAMER VIAware through August 2021 allows remote attackers to execute arbitrary code because ajaxPages/writeBrowseFilePathAjax.php accepts arbitrary executable pathnames (even though browseSystemFiles.php is no longer reachable via the GUI). NOTE: this issue exists because of an incomplete fix for CVE-2019-17124.

Exploits (2)

exploitdb WORKING POC
by sharkmoos · pythonremotehardware
https://www.exploit-db.com/exploits/50856

This exploit leverages CVE-2021-36356 to achieve remote code execution as root on KRAMER VIAware by uploading a PHP web shell and executing commands via sudo rpm with Lua code injection.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: KRAMER VIAware (tested on ViaWare Go (Linux))
No auth needed
Prerequisites: Network access to the target · Target running vulnerable KRAMER VIAware software
devstral-2 · analyzed Feb 16, 2026 Full analysis →
vulncheck_xdb WORKING POC
local
https://github.com/Chocapikk/CVE-2021-35064

This repository contains a functional exploit for CVE-2021-35064, which targets VIA Collaboration Hub. The exploit writes a PHP web shell to the target system and provides instructions for achieving root access via sudo rpm command execution.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: VIA Collaboration Hub
No auth needed
Prerequisites: Target system running VIA Collaboration Hub · Network access to the target
devstral-2 · analyzed Feb 25, 2026 Full analysis →

Nuclei Templates (1)

Kramer VIAware - Remote Code Execution
CRITICALby gy741

References (2)

Core 2
Core References
Exploit, Third Party Advisory, VDB Entry x_refsource_misc
http://packetstormsecurity.com/files/166623/Kramer-VIAware-Remote-Code-Execution.html
Third Party Advisory x_refsource_misc
https://write-up.github.io/kramerav/

Scores

CVSS v3 9.8
EPSS 0.5439
EPSS Percentile 98.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

VulnCheck KEV 2022-05-26
InTheWild.io 2022-05-26
CWE
CWE-434
Status published
Products (1)
kramerav/viaware < 2021-08
Published Aug 31, 2021
Tracked Since Feb 18, 2026