CVSS v3
9.9
CRITICAL
EPSS Score
92.3%
exploit probability
CISA KEV
No
known exploited
Exploitation
—
SSVC status
An OS command injection vulnerability exists in the Web Manager Wireless Network Scanner functionality of Lantronix PremierWave 2050 8.9.0.0R4. A specially-crafted HTTP request can lead to command execution. An attacker can make an authenticated HTTP request to trigger this vulnerability.
An OS command injection vulnerability exists in the Web Manager Wireless Network Scanner functionality of Lantronix PremierWave 2050 8.9.0.0R4. A specially-crafted HTTP request can lead to command execution. An attacker can make an authenticated HTTP request to trigger this vulnerability.
Active exploitation of CVE-2021-21881 has not been confirmed. The EPSS score is 92.3%, indicating the estimated probability of exploitation in the next 30 days.
CVE-2021-21881 has a CVSS v3 base score of 9.9 (CRITICAL severity).
Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.
Ranked by exploit probability (EPSS).