ZeroHour

CVE-2021-37584

CVSS 3.1
8.8 high
EPSS
1%p66
Published
()
Modified
Description

MediaTek microchips, as used in NETGEAR devices through 2021-11-11 and other devices, mishandle the WPS (Wi-Fi Protected Setup) protocol. (Affected Chipsets MT7603E, MT7610, MT7612, MT7613, MT7615, MT7620, MT7622, MT7628, MT7629, MT7915; Affected Software Versions 7.4.0.0; Out-of-bounds write).

Vendors
mediatek
Products
mt7603e firmware, mt7610 firmware, mt7612 firmware, mt7613 firmware, mt7615 firmware, mt7620 firmware, mt7622 firmware, mt7628 firmware, mt7629 firmware, mt7915 firmware
Weakness
CWE-787
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.