CVE-2021-35055
MediaTek microchips, as used in NETGEAR devices through 2021-11-11 and other devices, mishandle the WPS (Wi-Fi Protected Setup) protocol. (Affected Chipsets MT7603E, MT7610, MT7612, MT7613, MT7615, MT7620, MT7622, MT7628, MT7629, MT7915; Affected Software Versions 7.4.0.0; Out-of-bounds write).
Published:Dec 25, 2021
Last Modified:Nov 21, 2024
EPS:Dec 25, 2021
EPSS Score:0.00549
CVSS Score:8.2
Affected Products
Vendor
Product
Action
Vendor
Mediatek
Product
Mt7603e
Mediatek
Mt7603e
Vendor
Mediatek
Product
Mt7603e Firmware
Mediatek
Mt7603e Firmware
Vendor
Mediatek
Product
Mt7610
Mediatek
Mt7610
Vendor
Mediatek
Product
Mt7610 Firmware
Mediatek
Mt7610 Firmware
Vendor
Mediatek
Product
Mt7612
Mediatek
Mt7612
Vendor
Mediatek
Product
Mt7612 Firmware
Mediatek
Mt7612 Firmware
Vendor
Mediatek
Product
Mt7613
Mediatek
Mt7613
Vendor
Mediatek
Product
Mt7613 Firmware
Mediatek
Mt7613 Firmware
Vendor
Mediatek
Product
Mt7615
Mediatek
Mt7615
Vendor
Mediatek
Product
Mt7615 Firmware
Mediatek
Mt7615 Firmware
Vendor
Mediatek
Product
Mt7620
Mediatek
Mt7620
Vendor
Mediatek
Product
Mt7620 Firmware
Mediatek
Mt7620 Firmware
Vendor
Mediatek
Product
Mt7622
Mediatek
Mt7622
Vendor
Mediatek
Product
Mt7622 Firmware
Mediatek
Mt7622 Firmware
Vendor
Mediatek
Product
Mt7628
Mediatek
Mt7628
Vendor
Mediatek
Product
Mt7628 Firmware
Mediatek
Mt7628 Firmware
Vendor
Mediatek
Product
Mt7629
Mediatek
Mt7629
Vendor
Mediatek
Product
Mt7629 Firmware
Mediatek
Mt7629 Firmware
Vendor
Mediatek
Product
Mt7915
Mediatek
Mt7915
Vendor
Mediatek
Product
Mt7915 Firmware
Mediatek
Mt7915 Firmware
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
No CAPEC recorded yet
Related CVEs
References
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
