CVE Feed

    Dashboard / CVE / CVE-2021-21966

    CVE-2021-21966

    An information disclosure vulnerability exists in the HTTP Server /ping.html functionality of Texas Instruments CC3200 SimpleLink Solution NWP 2.9.0.0. A specially-crafted HTTP request can lead to an uninitialized read. An attacker can send an HTTP request to trigger this vulnerability.

    Published:Feb 16, 2022
    Last Modified:Nov 21, 2024
    EPS:Feb 16, 2022
    EPSS Score:0.02024
    CVSS Score:5.3

    Affected Products

    Vendor
    Ti
    Product
    Cc3100
    Vendor
    Ti
    Product
    Cc3100 Firmware
    Vendor
    Ti
    Product
    Cc3120
    Vendor
    Ti
    Product
    Cc3130
    Vendor
    Ti
    Product
    Cc3135
    Vendor
    Ti
    Product
    Cc3200
    Vendor
    Ti
    Product
    Cc3200 Firmware
    Vendor
    Ti
    Product
    Cc3220r
    Vendor
    Ti
    Product
    Cc3220s
    Vendor
    Ti
    Product
    Cc3220sf
    Vendor
    Ti
    Product
    Cc3230s
    Vendor
    Ti
    Product
    Cc3230sf
    Vendor
    Ti
    Product
    Cc3235s
    Vendor
    Ti
    Product
    Cc3235sf
    Vendor
    Ti
    Product
    Simplelink Cc32xx Software Development Kit

    Common Attack Pattern Enumeration and Classification (CAPEC)

    No CAPEC recorded yet

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High