---
id: CVE-2021-27703
title: >-
  Sercomm Model Etisalat Model S3- AC2100 is affected by Cross Site Scripting
  (XSS) via the firmware update page.
summary: >-
  Sercomm Model Etisalat Model S3- AC2100 is affected by Cross Site Scripting
  (XSS) via the firmware update page.
severity: medium
cvss: 5.4
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N'
cvssSource: adp
ssvc:
  exploitation: none
  automatable: 'no'
  technicalImpact: partial
  timestamp: '2024-11-15T21:23:32.807952Z'
published: '2024-11-12'
updated: '2026-10-07'
sourceUpdated: '2026-10-07T18:04:12.557Z'
source: CVEORG
sourceUrl: 'https://www.cve.org/CVERecord?id=CVE-2021-27703'
references:
  - url: 'https://github.com/Mrnmap/mrnmap-cve/blob/main/CVE-2021-27703'
tags:
  - cve.org
epss: 0.00252
epssPercentile: 0.15294
ingestedAt: '2026-10-07T18:42:20.908Z'
---

## Overview

Sercomm Model Etisalat Model S3- AC2100 is affected by Cross Site Scripting (XSS) via the firmware update page.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
