Unified Remote 3.9.0.2463 contains a remote code execution vulnerability that allows attackers to send crafted network packets to execute arbitrary commands. Attackers can exploit the service by connecting to port 9512 and sending specially crafted packets to open a command prompt and download and execute malicious payloads.
History

Mon, 26 Jan 2026 12:00:00 +0000

Type Values Removed Values Added
First Time appeared Unified Intents
Unified Intents unified Remote
Vendors & Products Unified Intents
Unified Intents unified Remote

Fri, 23 Jan 2026 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 23 Jan 2026 17:00:00 +0000

Type Values Removed Values Added
Description Unified Remote 3.9.0.2463 contains a remote code execution vulnerability that allows attackers to send crafted network packets to execute arbitrary commands. Attackers can exploit the service by connecting to port 9512 and sending specially crafted packets to open a command prompt and download and execute malicious payloads.
Title Unified Remote 3.9.0.2463 - Remote Code Execution
Weaknesses CWE-306
References
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

cvssV4_0

{'score': 9.3, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published: 2026-01-23T16:47:36.756Z

Updated: 2026-01-23T19:17:30.223Z

Reserved: 2026-01-18T12:35:05.173Z

Link: CVE-2021-47891

cve-icon Vulnrichment

Updated: 2026-01-23T19:17:27.589Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-01-23T17:15:52.523

Modified: 2026-01-26T15:03:33.357

Link: CVE-2021-47891

cve-icon Redhat

No data.