← Back to browse · API

CVE-2021-21950

Severity
CRITICAL
CVSS
10.0
EPSS
0.02405
Risk score
40.84
CISA KEV
No
PoC
No
Published
2021-12-08
Modified
2024-08-03
First seen
2026-08-08
Aliases
EUVD-2021-9121, GHSA-MH9P-PQ79-6Q5X
Products
n/a:Anker Anker Eufy Homebase 2 2.1.6.9h
Sources
euvd EUVD-2021-9121

Description

An out-of-bounds write vulnerability exists in the CMD_DEVICE_GET_SERVER_LIST_REQUEST functionality of the home_security binary of Anker Eufy Homebase 2 2.1.6.9h in function recv_server_device_response_msg_process. A specially-crafted network packet can lead to code execution.

References