Vulnerabilities > CVE-2021-21953 - Unspecified vulnerability in Anker Eufy Homebase 2 Firmware 2.1.6.9H

047910
CVSS 6.8 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
anker

Summary

An authentication bypass vulnerability exists in the process_msg() function of the home_security binary of Anker Eufy Homebase 2 2.1.6.9h. A specially-crafted man-in-the-middle attack can lead to increased privileges.

Vulnerable Configurations

Part Description Count
OS
Anker
1
Hardware
Anker
1