Skip to content

CVE-2021-27137

CVE

Threat entity extracted from intelligence sources

Frequency
2
occurrences
First Seen
June 5, 2026
Last Seen
June 5, 2026
API
Exploited in Wild
Ransomware Use
Public Exploits
Attack Vector

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

A new Gafgyt botnet variant named C0XMO has emerged, targeting DD-WRT routers by exploiting CVE-2021-27137, a buffer overflow vulnerability in the UPnP service. This malware employs a Python-based scanner to propagate across various CPU architectures, utilizing weak credentials and DDoS capabilities...

Public Exploits

Checking GitHub for proof-of-concept code…