CVE-2021-21887: Buffer Overflow
A stack-based buffer overflow vulnerability exists in the Web Manager SslGenerateCSR functionality of Lantronix PremierWave 2050 8.9.0.0R4 (in QEMU). A specially crafted HTTP request can lead to remote code execution. An attacker can make an authenticated HTTP request to trigger this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-21887?
CVE-2021-21887 is classified as a critical severity vulnerability due to its potential for remote code execution.
How do I fix CVE-2021-21887?
To fix CVE-2021-21887, you should update the Lantronix PremierWave 2050 firmware to the latest available version that addresses this vulnerability.
What type of vulnerability is CVE-2021-21887?
CVE-2021-21887 is a stack-based buffer overflow vulnerability.
What can an attacker achieve with CVE-2021-21887?
An attacker can execute arbitrary code remotely by sending a specially crafted HTTP request to exploit CVE-2021-21887.
In which product does CVE-2021-21887 exist?
CVE-2021-21887 exists in the Lantronix PremierWave 2050 firmware version 8.9.0.0-r4.