Vulnerabilities (CVE)

Filtered by vendor Chinamobileltd Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-33962 1 Chinamobileltd 2 An Lianbao Wf-1, An Lianbao Wf Firmware-1 2022-01-25 10.0 HIGH 9.8 CRITICAL
China Mobile An Lianbao WF-1 router v1.0.1 is affected by an OS command injection vulnerability in the web interface /api/ZRUsb/pop_usb_device component.
CVE-2021-33963 1 Chinamobileltd 2 An Lianbao 2f-1, An Lianbao 2f Firmware-1 2022-01-24 10.0 HIGH 9.8 CRITICAL
China Mobile An Lianbao WF-1 v1.0.1 router web interface through /api/ZRMacClone/mac_addr_clone receives parameters by POST request, and the parameter macType has a command injection vulnerability. An attacker can use the vulnerability to execute remote commands.