Vulnerability Details CVE-2021-26747
Netis WF2780 2.3.40404 and WF2411 1.1.29629 devices allow Shell Metacharacter Injection into the ping command, leading to remote code execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.548
EPSS Ranking 99.0%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 10.0
Products affected by CVE-2021-26747
-
cpe:2.3:h:netis-systems:wf2411:-
-
cpe:2.3:h:netis-systems:wf2780:-
-
cpe:2.3:o:netis-systems:wf2411_firmware:1.1.29629
-
cpe:2.3:o:netis-systems:wf2780_firmware:2.3.40404