threat
engine
.sh
Back
·
··:··
Home
/
Product
/
anker eufy homebase 2 firmware
Product
anker eufy homebase 2 firmware
13 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-2023-37822
< 3.3.4.1h
The Eufy Homebase 2 before firmware version 3.3.4.1h creates a dedicated wireless network for its ecosystem, which serves as a pro
8.2
HIGH
CVE-2022-29503
all versions
A memory corruption vulnerability exists in the libpthread linuxthreads functionality of uClibC 0.9.33.2 and uClibC-ng 1.0.40. Thr
9.8
CRITICAL
CVE-2022-21806
all versions
A use-after-free vulnerability exists in the mips_collector appsrv_server functionality of Anker Eufy Homebase 2 2.1.8.5h. A speci
9.8
CRITICAL
CVE-2022-26073
all versions
A denial of service vulnerability exists in the libxm_av.so DemuxCmdInBuffer functionality of Anker Eufy Homebase 2 2.1.8.5h. A sp
6.5
MEDIUM
CVE-2022-25989
all versions
An authentication bypass vulnerability exists in the libxm_av.so getpeermac() functionality of Anker Eufy Homebase 2 2.1.8.5h. A s
8.8
HIGH
CVE-2021-21953
all versions
An authentication bypass vulnerability exists in the process_msg() function of the home_security binary of Anker Eufy Homebase 2
8.1
HIGH
CVE-2021-21952
all versions
An authentication bypass vulnerability exists in the CMD_DEVICE_GET_RSA_KEY_REQUEST functionality of the home_security binary of A
9.8
CRITICAL
CVE-2021-21955
all versions
An authentication bypass vulnerability exists in the get_aes_key_info_by_packetid() function of the home_security binary of Anker
7.5
HIGH
CVE-2021-21954
all versions
A command execution vulnerability exists in the wifi_country_code_update functionality of the home_security binary of Anker Eufy H
9.9
CRITICAL
CVE-2021-21951
all versions
An out-of-bounds write vulnerability exists in the CMD_DEVICE_GET_SERVER_LIST_REQUEST functionality of the home_security binary of
10.0
CRITICAL
CVE-2021-21950
all versions
An out-of-bounds write vulnerability exists in the CMD_DEVICE_GET_SERVER_LIST_REQUEST functionality of the home_security binary of
10.0
CRITICAL
CVE-2021-21941
all versions
A use-after-free vulnerability exists in the pushMuxer CreatePushThread functionality of Anker Eufy Homebase 2 2.1.6.9h. A special
9.0
CRITICAL
CVE-2021-21940
all versions
A heap-based buffer overflow vulnerability exists in the pushMuxer processRtspInfo functionality of Anker Eufy Homebase 2 2.1.6.9h
10.0
CRITICAL
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh · Open-source threat intelligence platform · 100+ authoritative sources · Every fact traces to its origin