CVE-2021-28194

Severity CVSS v4.0:
Pending analysis
Type:
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Publication date:
06/04/2021
Last modified:
13/04/2021

Description

The specific function in ASUS BMC’s firmware Web management page (Remote image configuration setting) does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:asus:asmb9-ikvm_firmware:1.11.12:*:*:*:*:*:*:*
cpe:2.3:h:asus:asmb9-ikvm:-:*:*:*:*:*:*:*
cpe:2.3:o:asus:rs720a-e9-rs24-e_firmware:1.10.3:*:*:*:*:*:*:*
cpe:2.3:h:asus:rs720a-e9-rs24-e:-:*:*:*:*:*:*:*
cpe:2.3:o:asus:rs700a-e9-rs4_firmware:1.10.0:*:*:*:*:*:*:*
cpe:2.3:h:asus:rs700a-e9-rs4:-:*:*:*:*:*:*:*
cpe:2.3:o:asus:rs700-e9-rs4_firmware:1.09:*:*:*:*:*:*:*
cpe:2.3:h:asus:rs700-e9-rs4:-:*:*:*:*:*:*:*
cpe:2.3:o:asus:esc4000_g4x_firmware:1.11.6:*:*:*:*:*:*:*
cpe:2.3:h:asus:esc4000_g4x:-:*:*:*:*:*:*:*
cpe:2.3:o:asus:rs700-e9-rs12_firmware:1.11.5:*:*:*:*:*:*:*
cpe:2.3:h:asus:rs700-e9-rs12:-:*:*:*:*:*:*:*
cpe:2.3:o:asus:rs100-e10-pi2_firmware:1.13.6:*:*:*:*:*:*:*
cpe:2.3:h:asus:rs100-e10-pi2:-:*:*:*:*:*:*:*
cpe:2.3:o:asus:rs300-e10-ps4_firmware:1.13.6:*:*:*:*:*:*:*