Home/Product/anker eufy homebase 2 firmware
Product

anker eufy homebase 2 firmware

13 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-37822
< 3.3.4.1h
The Eufy Homebase 2 before firmware version 3.3.4.1h creates a dedicated wireless network for its ecosystem, which serves as a pro
8.2HIGH
CVE-2022-29503
all versions
A memory corruption vulnerability exists in the libpthread linuxthreads functionality of uClibC 0.9.33.2 and uClibC-ng 1.0.40. Thr
9.8CRITICAL
CVE-2022-21806
all versions
A use-after-free vulnerability exists in the mips_collector appsrv_server functionality of Anker Eufy Homebase 2 2.1.8.5h. A speci
9.8CRITICAL
CVE-2022-26073
all versions
A denial of service vulnerability exists in the libxm_av.so DemuxCmdInBuffer functionality of Anker Eufy Homebase 2 2.1.8.5h. A sp
6.5MEDIUM
CVE-2022-25989
all versions
An authentication bypass vulnerability exists in the libxm_av.so getpeermac() functionality of Anker Eufy Homebase 2 2.1.8.5h. A s
8.8HIGH
CVE-2021-21953
all versions
An authentication bypass vulnerability exists in the process_msg() function of the home_security binary of Anker Eufy Homebase 2
8.1HIGH
CVE-2021-21952
all versions
An authentication bypass vulnerability exists in the CMD_DEVICE_GET_RSA_KEY_REQUEST functionality of the home_security binary of A
9.8CRITICAL
CVE-2021-21955
all versions
An authentication bypass vulnerability exists in the get_aes_key_info_by_packetid() function of the home_security binary of Anker
7.5HIGH
CVE-2021-21954
all versions
A command execution vulnerability exists in the wifi_country_code_update functionality of the home_security binary of Anker Eufy H
9.9CRITICAL
CVE-2021-21951
all versions
An out-of-bounds write vulnerability exists in the CMD_DEVICE_GET_SERVER_LIST_REQUEST functionality of the home_security binary of
10.0CRITICAL
CVE-2021-21950
all versions
An out-of-bounds write vulnerability exists in the CMD_DEVICE_GET_SERVER_LIST_REQUEST functionality of the home_security binary of
10.0CRITICAL
CVE-2021-21941
all versions
A use-after-free vulnerability exists in the pushMuxer CreatePushThread functionality of Anker Eufy Homebase 2 2.1.6.9h. A special
9.0CRITICAL
CVE-2021-21940
all versions
A heap-based buffer overflow vulnerability exists in the pushMuxer processRtspInfo functionality of Anker Eufy Homebase 2 2.1.6.9h
10.0CRITICAL
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin