Critical severity9.1NVD Advisory· Published Dec 22, 2021· Updated Jun 17, 2026
CVE-2021-21888
CVE-2021-21888
Description
An OS command injection vulnerability exists in the Web Manager SslGenerateCertificate functionality of Lantronix PremierWave 2050 8.9.0.0R4 (in QEMU). A specially crafted HTTP request can lead to arbitrary command execution. An attacker can make an authenticated HTTP request to trigger this vulnerability.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3= 8.9.0.0R4+ 1 more
- (no CPE)range: = 8.9.0.0R4
- (no CPE)
- cpe:2.3:o:lantronix:premierwave_2050_firmware:8.9.0.0:r4:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- talosintelligence.com/vulnerability_reports/TALOS-2021-1332nvdExploitTechnical DescriptionThird Party Advisory
News mentions
0No linked articles in our index yet.