Security Advisory

CVE-2021-21891

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2021-12-22 18:06:40
Last updated 2024-08-03 18:30:22
Assigner talos
CVSS score 9.1
State PUBLISHED

Description

A stack-based buffer overflow vulnerability exists in the Web Manager FsBrowseClean functionality of Lantronix PremierWave 2050 8.9.0.0R4 (in QEMU). A specially crafted HTTP request can lead to remote code execution in the vulnerable portion of the branch (deletefile). An attacker can make an authenticated HTTP request to trigger this vulnerability.