S4E

CVE-2021-36380 Scanner

CVE-2021-36380 scanner - Command Injection vulnerability in Sunhillo SureLine

Short Info


Level

Critical

Single Scan

Single Scan

Can be used by

Asset Owner

Estimated Time

10 seconds

Time Interval

1 month 11 days

Scan only one

Domain, IPv4, Subdomain

Toolbox

The Sunhillo SureLine is a network monitoring device used by organizations to diagnose issues with their network infrastructure. The device is designed to provide users with real-time network monitoring and management capabilities, allowing them to quickly identify and resolve network issues before they impact the operations of the organization. Additionally, Sunhillo SureLine allows users to collect and analyze network data, and generate reports to better understand network performance.

Recently, a vulnerability was detected in the Sunhillo SureLine device, identified as CVE-2021-36380. This vulnerability allows unauthenticated OS command injection via shell metacharacters in the ipAddr or dnsAddr /cgi/networkDiag.cgi, which can be exploited by attackers to execute malicious code on the device and take control of the network.

When exploited, this vulnerability can lead to a range of issues for organizations, including data breaches, network downtime, theft of sensitive information, and loss of reputation. Attackers can use the device to gain unauthorized access to sensitive information, spread malicious code across the network, and even launch attacks against other organizations connected to the same network.

In conclusion, it's essential to protect your digital assets from threats such as the CVE-2021-36380 vulnerability. With s4e.io, you can easily and quickly learn about vulnerabilities in your digital assets and take preventive measures to secure your network. Invest in the pro features of the s4e.io platform and keep your network safe and secure.

 

REFERENCES

Get started to protecting your digital assets