Critical severity9.8NVD Advisory· Published Aug 12, 2021· Updated Jun 17, 2026
CVE-2021-31698
CVE-2021-31698
Description
Quectel EG25-G devices through 202006130814 allow executing arbitrary code remotely by using an AT command to place shell metacharacters in quectel_handle_fumo_cfg input in atfwd_daemon.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:o:quectel:eg25-g_firmware:*:*:*:*:*:*:*:*Range: <=202006130814
- Quectel/EG25-Gdescription
- Range: <=202006130814
Patches
Vulnerability mechanics
References
1- nns.ee/blog/2021/04/03/modem-rce.htmlnvdExploitThird Party Advisory
News mentions
1- A Malicious SIM Card Can Run Attacker Code Inside the Modems Behind Cellular IoT DevicesThe Hacker News · Aug 11, 2026