Back to Database
Status published
Critical
CVE-2021-33962
China Mobile An Lianbao WF-1 router v1.0.1 is affected by...
Vulnerability Description
China Mobile An Lianbao WF-1 router v1.0.1 is affected by an OS command injection vulnerability in the web interface /api/ZRUsb/pop_usb_device component.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2021-33962
Credits & Attribution
No credits recorded in the NVD database.
References
- https://www.ebuy7.com/item/china-mobile-wireless-router-qualcomm-qiki-wifi6-routing-mesh-network-home-5g-dual-frequency-double-gigabit-port-wall-wall-high-speed-%E2%80%8B%E2%80%8Bhigh-power-enhanced-dormitory-students-an-lianbao-wf-1-628692180620
- http://iot.10086.cn/?l=en-us
- https://www.cnvd.org.cn/flaw/show/CNVD-2021-03520
- https://github.com/pokerfacett/MY_CVE_CREDIT/blob/master/China%20Mobile%20An%20Lianbao%20WF-1%20router%20Command%20Injection12.md
More from chinamobileltd
View All →CVE-2020-18331
Directory traversal vulnerability in ChinaMobile PLC Wireless Router model GPN2.4P21-C-CN...
Unknown
0
CVE-2020-18330
An issue was discovered in the default configuration of ChinaMobile...
Unknown
0
CVE-2019-6282
ChinaMobile PLC Wireless Router GPN2.4P21-C-CN devices with firmware W2001EN-00 have...
High
8.8
CVE-2019-6279
ChinaMobile PLC Wireless Router GPN2.4P21-C-CN devices with firmware W2001EN-00 have...
High
8.8
Affected Vendor
chinamobileltd
View all reports →Affected Software
an lianbao wf firmware-1
Vulnerable Versions:
1.0.1
Timeline
Official Publish:
January 14th, 2022
Last Modified:
August 4th, 2024
Added to House:
July 21st, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.