CVE-2021-27715

An issue was discovered in MoFi Network MOFI4500-4GXeLTE-V2 3.5.6-xnet-5052 allows attackers to bypass the authentication and execute arbitrary code via crafted HTTP request.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:mofinetwork:mofi4500-4gxelte-v2_firmware:3.5.6-xnet-5052:*:*:*:*:*:*:*
cpe:2.3:h:mofinetwork:mofi4500-4gxelte-v2:-:*:*:*:*:*:*:*

History

12 Sep 2023, 20:19

Type Values Removed Values Added
References (MISC) http://mofi.com - (MISC) http://mofi.com - Not Applicable
References (MISC) https://www.nagarro.com/services/security/mofi-cve-security-advisory - (MISC) https://www.nagarro.com/services/security/mofi-cve-security-advisory - Third Party Advisory
CWE CWE-287
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
First Time Mofinetwork
Mofinetwork mofi4500-4gxelte-v2 Firmware
Mofinetwork mofi4500-4gxelte-v2
CPE cpe:2.3:h:mofinetwork:mofi4500-4gxelte-v2:-:*:*:*:*:*:*:*
cpe:2.3:o:mofinetwork:mofi4500-4gxelte-v2_firmware:3.5.6-xnet-5052:*:*:*:*:*:*:*

08 Sep 2023, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-09-08 03:15

Updated : 2024-02-28 20:33


NVD link : CVE-2021-27715

Mitre link : CVE-2021-27715

CVE.ORG link : CVE-2021-27715


JSON object : View

Products Affected

mofinetwork

  • mofi4500-4gxelte-v2
  • mofi4500-4gxelte-v2_firmware
CWE
CWE-287

Improper Authentication