Fixed Intel

CISA Known Exploited Vulnerability

This vulnerability is actively exploited in the wild and listed in the CISA Known Exploited Vulnerabilities catalog.

Remediation Deadline: Mar 26, 2024

High
CISA KEV

CVE-2021-36380

SunhilloSureLine

Sunhillo SureLine contains an OS command injection vulnerability that allows an attacker to cause a denial-of-service or utilize the device for persistence on the network via shell metacharacters in ipAddr or dnsAddr in /cgi/networkDiag.cgi.

Required Action

https://www.sunhillo.com/fb011/; https://nvd.nist.gov/vuln/detail/CVE-2021-36380

Vulnerability Overview

Severity
High
CISA KEV
Yes
Ransomware
Unknown
Published
Mar 5, 2024
KEV Added
Mar 5, 2024
Due Date
Mar 26, 2024
Related Articles
0

Vendor

Sunhillo

SureLine