📦 Premierwave 2050 Firmware

by Lantronix

🔍 What is Premierwave 2050 Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-21881

CRITICAL CVSS 9.9 Dec 22, 2021

This CVE describes an OS command injection vulnerability in Lantronix PremierWave 2050's Web Manager Wireless Network Scanner. Authenticated attackers can execute arbitrary commands on the device by s...

CVE-2021-21883

CRITICAL CVSS 9.9 Dec 22, 2021

This CVE allows authenticated attackers to execute arbitrary operating system commands on Lantronix PremierWave 2050 devices through the Web Manager Diagnostics Ping functionality. Successful exploita...

CVE-2021-21887

CRITICAL CVSS 9.1 Dec 22, 2021

This vulnerability allows authenticated remote attackers to execute arbitrary code on Lantronix PremierWave 2050 devices by exploiting a stack-based buffer overflow in the Web Manager's SSL certificat...

CVE-2021-21889

CRITICAL CVSS 9.9 Dec 22, 2021

This vulnerability allows authenticated attackers to execute arbitrary code on Lantronix PremierWave 2050 devices by exploiting a stack-based buffer overflow in the Web Manager Ping functionality. Att...

CVE-2021-21891

CRITICAL CVSS 9.1 Dec 22, 2021

This vulnerability allows authenticated remote attackers to execute arbitrary code on Lantronix PremierWave 2050 devices by sending a specially crafted HTTP request that triggers a stack-based buffer ...

CVE-2021-21894

CRITICAL CVSS 9.1 Dec 22, 2021

This CVE describes an authenticated directory traversal vulnerability in Lantronix PremierWave 2050's Web Manager FsTFtp functionality. An attacker with valid credentials can exploit this to read or o...

CVE-2021-21872

CRITICAL CVSS 9.9 Dec 22, 2021

This CVE describes an OS command injection vulnerability in Lantronix PremierWave 2050's Web Manager Diagnostics Traceroute functionality. An authenticated attacker can execute arbitrary commands on t...

CVE-2021-21874

CRITICAL CVSS 9.1 Dec 22, 2021

This vulnerability allows authenticated attackers to execute arbitrary commands on affected systems by sending specially crafted HTTP requests containing malicious input in the DSA keypasswd parameter...

CVE-2021-21876

CRITICAL CVSS 9.1 Dec 22, 2021

CVE-2021-21876 allows authenticated attackers to execute arbitrary commands via specially crafted HTTP PUT requests. This vulnerability affects systems running vulnerable versions of the affected soft...

CVE-2021-21885

HIGH CVSS 7.2 Dec 22, 2021

This CVE describes an authenticated directory traversal vulnerability in Lantronix PremierWave 2050's Web Manager FsMove functionality. An attacker with valid credentials can craft HTTP requests to ac...