← Back to browse · API

CVE-2021-35402

Severity
CRITICAL
CVSS
10.0
EPSS
0.00955
Risk score
40.33
CISA KEV
No
PoC
No
Published
2026-02-20
Modified
2026-02-23
First seen
2026-08-07
Aliases
EUVD-2021-22045, GHSA-68G8-2724-HQ79
Products
PROLiNK:PRC2402M 20190909 <2021-06-13
Sources
euvd EUVD-2021-22045

Description

PROLiNK PRC2402M 20190909 before 2021-06-13 allows live_api.cgi?page=satellite_list OS command injection via shell metacharacters in the ip parameter (for satellite_status).

References