CVE-2021-21748: Buffer Overflow
ZTE MF971R product has two stack-based buffer overflow vulnerabilities. An attacker could exploit the vulnerabilities to execute arbitrary code.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-21748?
CVE-2021-21748 is a vulnerability in the ZTE MF971R product that allows an attacker to execute arbitrary code through stack-based buffer overflow vulnerabilities.
How severe is CVE-2021-21748?
CVE-2021-21748 has a severity rating of 9.8, which is considered critical.
What software is affected by CVE-2021-21748?
The ZTE MF971R firmware versions v1.0.0b05 and 1v1.0.0b06 are affected by CVE-2021-21748.
How can an attacker exploit CVE-2021-21748?
An attacker can exploit CVE-2021-21748 by utilizing the stack-based buffer overflow vulnerabilities to execute arbitrary code.
Is there a fix available for CVE-2021-21748?
ZTE has released a security advisory with firmware updates addressing the CVE-2021-21748 vulnerability. Please refer to the ZTE support website for more information.