CVE-2021-29003
57Vexday Risk Score
Prioritize patching. It exploitation observed by VulnCheck and has a public proof of concept.
ssvc Actepss 45%
from disclosure to weapon1 days
Published on NVDApr 13
1st PoC+1d
VulnCheck+49d
exploitation probability
45%top 1% of all CVEs
observed exploitation
yesVulnCheck
3 public exploit(s)
Genexis PLATINUM 4410 2.1 P4410-V2-1.28 devices allow remote attackers to execute arbitrary code via shell metacharacters to sys_config_valid.xgi, as demonstrated by the sys_config_valid.xgi?exeshell=%60telnetd%20%26%60 URI.
Affected products
n/a · n/apublic PoCs found — 3
exploitdbwww.exploit-db.com/exploits/49764unverifiedgithubgithub.com/jaysharma786/CVE-2021-29003★ 0cve_referencepacketstormsecurity.com/files/162174/Genexis-PLATINUM-4410-2.1-P4410-V2-1.28-Remote-Command-Execution.htmlunverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.