CVE-2021-36380
Sunhillo SureLine OS Command Injection Vulnerablity
⚠ KEVEPSS 97.6%
Description
Sunhillo SureLine contains an OS command injection vulnerability that allows an attacker to cause a denial-of-service or utilize the device for persistence on the network via shell metacharacters in ipAddr or dnsAddr in /cgi/networkDiag.cgi.
How to fix CVE-2021-36380
No package mapping is available — consult the references below for vendor-specific guidance.
Is CVE-2021-36380 being exploited?
Yes — CVE-2021-36380 is on the CISA Known Exploited Vulnerabilities (KEV) catalog. Patch immediately.
Affected packages (0)
No package mapping in OSV.