First published: Wed Jun 15 2022(Updated: )
A use-after-free vulnerability exists in the mips_collector appsrv_server functionality of Anker Eufy Homebase 2 2.1.8.5h. A specially-crafted set of network packets can lead to remote code execution. The device is exposed to attacks from the network.
Credit: talos-cna@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Anker Eufy Homebase 2 Firmware | =2.1.8.5h | |
Anker Eufy Homebase 2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-21806 is classified as a critical vulnerability due to its potential for remote code execution.
To fix CVE-2022-21806, update the Anker Eufy Homebase 2 firmware to the latest version provided by the vendor.
The Anker Eufy Homebase 2 version 2.1.8.5h is affected by CVE-2022-21806.
Yes, CVE-2022-21806 can be exploited remotely through specially-crafted network packets.
CVE-2022-21806 is a use-after-free vulnerability affecting the mips_collector appsrv_server functionality.