CVE-2021-21953: High severity eufy homebase 2 firmware vulnerability
An authentication bypass vulnerability exists in the processmsg() function of the homesecurity binary of Anker Eufy Homebase 2 2.1.6.9h. A specially-crafted man-in-the-middle attack can lead to increased privileges.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-21953?
CVE-2021-21953 is considered to have a high severity due to the potential for authentication bypass and increased privileges.
How do I fix CVE-2021-21953?
To fix CVE-2021-21953, users should update the Anker Eufy Homebase 2 to the latest firmware version that addresses this vulnerability.
What type of attack is associated with CVE-2021-21953?
CVE-2021-21953 is associated with a man-in-the-middle attack that can exploit the vulnerability to gain unauthorized access.
Which software version is affected by CVE-2021-21953?
CVE-2021-21953 affects the Anker Eufy Homebase 2 firmware version 2.1.6.9h.
What are the potential impacts of CVE-2021-21953?
The potential impacts of CVE-2021-21953 include unauthorized access and control over the Anker Eufy Homebase 2 system.