CVE-2021-21889: Buffer Overflow
A stack-based buffer overflow vulnerability exists in the Web Manager Ping functionality of Lantronix PremierWave 2050 8.9.0.0R4 (in QEMU). A specially crafted HTTP request can lead to remote code execution. An attacker can make an authenticated HTTP request to trigger this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-21889?
CVE-2021-21889 is a critical severity vulnerability due to its potential for remote code execution.
How do I fix CVE-2021-21889?
To fix CVE-2021-21889, upgrade to the latest version of the Lantronix PremierWave 2050 firmware that addresses this vulnerability.
What type of attack is associated with CVE-2021-21889?
CVE-2021-21889 is associated with remote code execution via a specially crafted HTTP request.
Who is affected by CVE-2021-21889?
CVE-2021-21889 affects users of Lantronix PremierWave 2050 running firmware version 8.9.0.0-r4.
Is authentication required to exploit CVE-2021-21889?
Yes, an attacker must make an authenticated HTTP request to exploit CVE-2021-21889.