QuectelCVEs & Vulnerabilities
4 CVEs affecting Quectel products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
4 CVEs→ All vendors
Most Affected Products
ag550qcn 1ag550qcn firmware 1eg25-g 1eg25-g firmware 1rg502q-ea 1rg502q-ea firmware 1uc20 1uc20 firmware 1
CVE-2023-26921CRITICAL
OS Command Injection vulnerability in quectel AG550QCN allows attackers to execute arbitrary commands via ql_atfwd.
4 Apr 2023
9.8
CVSS
CVE-2022-26147CRITICAL
The Quectel RG502Q-EA modem before 2022-02-23 allow OS Command Injection.
21 Jun 2022
9.8
CVSS
CVE-2021-45815MEDIUM
Quectel UC20 UMTS/HSPA+ UC20 6.3.14 is affected by a Cross Site Scripting (XSS) vulnerability.
30 Dec 2021
6.1
CVSS
CVE-2021-31698CRITICAL
Quectel EG25-G devices through 202006130814 allow executing arbitrary code remotely by using an AT command to place shell metacharacters in quectel_handle_fumo_cfg input in atfwd_daemon.
13 Aug 2021
9.8
CVSS
← PrevPage 1 / 1Next →