← back
CVE-2021-35402criticalobserved exploitationCWE-78

CVE-2021-35402

50Vexday Risk Score

Prioritize patching. It exploitation observed by VulnCheck.

ssvc Actcvss 10epss 1.0%
from disclosure to weapon
Published on NVDFeb 20
VulnCheckMar 25
exploitation probability
1.0%top 40% of all CVEs
observed exploitation
yesVulnCheck
PROLiNK PRC2402M 20190909 before 2021-06-13 allows live_api.cgi?page=satellite_list OS command injection via shell metacharacters in the ip parameter (for satellite_status).
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Affected products
PROLiNK · PRC2402M