Security Advisory

CVE-2021-21955

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-12-09 15:32:43
Last updated 2024-08-03 18:30:23
Assigner talos
State PUBLISHED

Description

An authentication bypass vulnerability exists in the get_aes_key_info_by_packetid() function of the home_security binary of Anker Eufy Homebase 2 2.1.6.9h. Generic network sniffing can lead to password recovery. An attacker can sniff network traffic to trigger this vulnerability.