Stack-based Buffer Overflow Vulnerability in ZTE MF971R
CVE-2021-21748

9.8CRITICAL

Key Information:

Vendor

Zte

Status
Vendor
CVE Published:
20 October 2021

What is CVE-2021-21748?

The ZTE MF971R device is affected by two significant stack-based buffer overflow vulnerabilities. These vulnerabilities may allow an attacker to execute arbitrary code, leading to potential security breaches. It is essential for users of this device to be aware of the risks and apply the necessary security measures to protect against potential exploits.

Affected Version(s)

MF971R BD_ZTE_MF971RV1.0.0B05, BD_PLKPLMF971R1V1.0.0B06, BD_MF971R2V1.0.0B03, BD_ZTE_MF971RS2V1.0.0B03, BD_ZTE_MF971RSV1.0.0B05

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.