Cradlepoint IBR900-600 devices running versions < 7.21.10 are vulnerable to a restricted shell escape sequence that provides an attacker the capability to simultaneously deny availability to the device's NetCloud Manager console, local console and SSH command-line.
Link | Tags |
---|---|
https://cradlepoint.com/product/endpoints/ibr900/ | product vendor advisory |
https://securitybytes.me/posts/cve-2021-37471/ | third party advisory exploit |