CVE Feed

    Dashboard / CVE / CVE-2021-37565

    CVE-2021-37565

    MediaTek microchips, as used in NETGEAR devices through 2021-11-11 and other devices, mishandle IEEE 1905 protocols. (Affected Chipsets MT7603E, MT7613, MT7615, MT7622, MT7628, MT7629, MT7915; Affected Software Versions 2.0.2; Out-of-bounds read).

    Published:Dec 25, 2021
    Last Modified:Nov 21, 2024
    EPS:Dec 25, 2021
    EPSS Score:0.00607
    CVSS Score:8.2

    Affected Products

    Vendor
    Mediatek
    Product
    Mt7603e
    Vendor
    Mediatek
    Product
    Mt7603e Firmware
    Vendor
    Mediatek
    Product
    Mt7613
    Vendor
    Mediatek
    Product
    Mt7613 Firmware
    Vendor
    Mediatek
    Product
    Mt7615
    Vendor
    Mediatek
    Product
    Mt7615 Firmware
    Vendor
    Mediatek
    Product
    Mt7622
    Vendor
    Mediatek
    Product
    Mt7622 Firmware
    Vendor
    Mediatek
    Product
    Mt7628
    Vendor
    Mediatek
    Product
    Mt7628 Firmware
    Vendor
    Mediatek
    Product
    Mt7629
    Vendor
    Mediatek
    Product
    Mt7629 Firmware
    Vendor
    Mediatek
    Product
    Mt7915
    Vendor
    Mediatek
    Product
    Mt7915 Firmware

    Exploits

    No exploit reference

    Common Weakness Enumeration

    Common Attack Pattern Enumeration and Classification (CAPEC)

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High