Remote Code Execution Vulnerability in TG8 Firewall by TG8 Security
CVE-2021-4470
Key Information:
- Vendor
Tg8
- Status
- Vendor
- CVE Published:
- 14 November 2025
Badges
What is CVE-2021-4470?
The TG8 Firewall has a pre-authentication remote code execution flaw affecting the runphpcmd.php endpoint. The vulnerability arises because the syscmd POST parameter is sent directly to a system command without proper validation and is executed with root privileges. An unauthenticated attacker can exploit this flaw by providing specially crafted input, allowing them to execute arbitrary commands on the operating system with root-level access. This can lead to a complete compromise of the affected device, posing significant security risks for users.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
TG8 Firewall 0
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
