CVE-2021-31698: exploitation status and patch state
CVE-2021-31698 · CVSS 9.8 CRITICAL · EPSS 2%
Quectel EG25-G devices through 202006130814 allow executing arbitrary code remotely by using an AT command to place shell metacharacters in quectel_handle_fumo_cfg input in atfwd_daemon.
Is CVE-2021-31698 exploited?
Not in the CISA KEV catalog.
EPSS puts exploitation in the next 30 days at 2%.
Public exploit code: none found in monitored sources.