CyberSec.Space Logo
Back to CVE Browser

CVE-2021-21951

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.0890%
EPSS Percentile44.11th
PublishedDec 8, 2021
Last ModifiedNov 21, 2024

Vulnerability Description

An out-of-bounds write vulnerability exists in the CMD_DEVICE_GET_SERVER_LIST_REQUEST functionality of the home_security binary of Anker Eufy Homebase 2 2.1.6.9h in function read_udp_push_config_file. A specially-crafted network packet can lead to code execution.

Affected Platforms (CPE)

💻
Anker

Eufy Homebase 2 Firmware

= 2.1.6.9h

References & Advisories

Related Vulnerabilities