CVE-2021-21891: Buffer Overflow
A stack-based buffer overflow vulnerability exists in the Web Manager FsBrowseClean functionality of Lantronix PremierWave 2050 8.9.0.0R4 (in QEMU). A specially crafted HTTP request can lead to remote code execution in the vulnerable portion of the branch (deletefile). An attacker can make an authenticated HTTP request to trigger this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-21891?
CVE-2021-21891 is rated as critical due to its potential for remote code execution.
How do I fix CVE-2021-21891?
To mitigate CVE-2021-21891, update the Lantronix PremierWave 2050 firmware to the latest version.
What kind of devices are affected by CVE-2021-21891?
The vulnerability affects the Lantronix PremierWave 2050 firmware version 8.9.0.0R4.
What attack vector is used in CVE-2021-21891?
CVE-2021-21891 can be exploited through specially crafted HTTP requests.
What is the impact of exploiting CVE-2021-21891?
Exploiting CVE-2021-21891 can lead to remote code execution on the affected device.