CVE-2021-40556: High severity asus rt-ax56u v2 firmware vulnerability
A stack overflow vulnerability exists in the httpd service in ASUS RT-AX56U Router Version 3.0.0.4.386.44266. This vulnerability is caused by the strcat function called by "caupload" input handle function allowing the user to enter 0xFFFF bytes into the stack. This vulnerability allows an attacker to execute commands remotely. The vulnerability requires authentication.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-40556?
CVE-2021-40556 is a stack overflow vulnerability in the httpd service in ASUS RT-AX56U Router Version 3.0.0.4.386.44266.
How severe is CVE-2021-40556?
CVE-2021-40556 has a severity score of 8.8 (high).
How does CVE-2021-40556 affect ASUS RT-AX56U Router?
CVE-2021-40556 affects ASUS RT-AX56U Router Version 3.0.0.4.386.44266 firmware.
How can I fix CVE-2021-40556?
To fix CVE-2021-40556, update your ASUS RT-AX56U Router firmware to the latest version provided by the manufacturer.
Where can I find more information about CVE-2021-40556?
You can find more information about CVE-2021-40556 on the ASUS website and the provided reference links.