High severity7.2NVD Advisory· Published Aug 22, 2022· Updated Jun 17, 2026
CVE-2021-37289
CVE-2021-37289
Description
Insecure Permissions in administration interface in Planex MZK-DP150N 1.42 and 1.43 allows attackers to execute system command as root via etc_ro/web/syscmd.asp.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:o:planex:mzk-dp150n_firmware:1.42:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:planex:mzk-dp150n_firmware:1.42:*:*:*:*:*:*:*
- cpe:2.3:o:planex:mzk-dp150n_firmware:1.43:*:*:*:*:*:*:*
- Planex/MZK-DP150Ndescription
- Range: 1.42, 1.43
Patches
Vulnerability mechanics
References
3- samy.link/blog/a-hidden-web-shell-in-the-plug-in-wireless-planex-mzk-dp150nnvdExploitThird Party Advisory
- www.planex.co.jp/products/mzk-dp150n/nvdProductVendor Advisory
- jvn.jp/en/vu/JVNVU98291763/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.