CVE-2023-31746

CRITICAL

adslr VW2100 M1DV1.0 - Command Injection

Title source: llm
STIX 2.1

Description

There is a command injection vulnerability in the adslr VW2100 router with firmware version M1DV1.0. An unauthenticated attacker can exploit the vulnerability to execute system commands as the root user.

Scores

CVSS v3 9.8
EPSS 0.0205
EPSS Percentile 84.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-77
Status published
Products (1)
adslr/vw2100_firmware m1dv1.0
Published Jun 14, 2023
Tracked Since Feb 18, 2026