Vulnerability Details CVE-2021-26747
Netis WF2780 2.3.40404 and WF2411 1.1.29629 devices allow Shell Metacharacter Injection into the ping command, leading to remote code execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.244
EPSS Ranking 95.8%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 10.0
Products affected by CVE-2021-26747
-
cpe:2.3:h:netis-systems:wf2411:-
-
cpe:2.3:h:netis-systems:wf2780:-
-
cpe:2.3:o:netis-systems:wf2411_firmware:1.1.29629
-
cpe:2.3:o:netis-systems:wf2780_firmware:2.3.40404