CVE-2026-21549
Received Received - Intake

Improper Input Validation in Modem Leads to DoS

Vulnerability report for CVE-2026-21549, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-08-03

Last updated on: 2026-08-03

Assigner: Unisoc

Description

In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-08-03
Last Modified
2026-08-03
Generated
2026-08-03
AI Q&A
2026-08-03
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Currently, no data is known.

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-UNKNOWN

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability involves improper input validation in a modem component. It allows remote attackers to cause a denial of service without needing additional privileges.

Impact Analysis

The vulnerability could allow an attacker to remotely crash your device by sending malformed input, disrupting normal operations such as internet connectivity or communication services.

Compliance Impact

This vulnerability could lead to remote denial of service, which may impact availability of systems. Compliance with standards like GDPR or HIPAA often requires maintaining system availability and protecting against disruptions, so such vulnerabilities could pose risks to compliance.

Mitigation Strategies

Apply the latest security patches from the device manufacturer. Monitor network traffic for unusual activity. Disable unnecessary modem services if not in use. Restrict access to modem interfaces via firewall rules.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-21549. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart