Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2021-23241

MERCUSYS Mercury X18G 1.0.5 devices allow Directory Traversal via ../ in conjunction with a loginLess or login.htm URI (for authentication bypass) to the web server, as demonstrated by the /loginLess/../../etc/passwd URI.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.579
EPSS Ranking 98.0%
CVSS Severity
CVSS v3 Score 5.3
CVSS v2 Score 5.0
Products affected by CVE-2021-23241


Contact Us

Shodan ® - All rights reserved