ZeroHour

CVE-2021-21966

PoC
CVSS 3.1
5.3 medium
EPSS
1%p71
Published
()
Modified
Description

An information disclosure vulnerability exists in the HTTP Server /ping.html functionality of Texas Instruments CC3200 SimpleLink Solution NWP 2.9.0.0. A specially-crafted HTTP request can lead to an uninitialized read. An attacker can send an HTTP request to trigger this vulnerability.

Vendors
ti
Products
simplelink cc32xx software development kit, cc3100 firmware, cc3200 firmware
Weakness
CWE-457, CWE-908
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.