Security Advisory

CVE-2021-4470

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-11-14 22:50:45
Last updated 2025-11-18 16:20:30
Assigner VulnCheck
State PUBLISHED

Description

TG8 Firewall contains a pre-authentication remote code execution vulnerability in the runphpcmd.php endpoint. The syscmd POST parameter is passed directly to a system command without validation and executed with root privileges. A remote, unauthenticated attacker can supply crafted values to execute arbitrary operating system commands as root, resulting in full device compromise.