CVE@CVEnewDisclosure
The text announces CVE‑2021‑4473, describing a command injection vulnerability in the Reporter component that can be exploited without authentication.
CTIWatch@ctiwatchcloudActive Exploitation
The alert indicates that CVE‑2021‑4473, a high‑severity command injection vulnerability, is actively exploited in the wild. No patch details or PoC information are included in the text.
Gray Hats@the_yellow_fallActive Exploitation
Shadowserver reports that CVE-2021-4473 is actively exploited in Tianxin systems, citing a 9.3 CVSS score and unauthenticated RCE, and urges users to patch firmware promptly.
CVEFind.com@CveFindComPatch
The post highlights a critical command‑injection flaw in Tianxin Internet Behavior Management System, confirms it has been patched in firmware version 4.0.0.7_20210716, and notes that Shadowserver has found exploitation evidence in the wild.
0day Signal@0dayPublishingDisclosure
The tweet announces CVE‑2021‑4473, noting an unauthenticated remote code execution flaw involving shell metacharacters in the objClass parameter, and provides a link to a zero‑day signal page for further details.