CISA Known Exploited Vulnerability

CVE-2021-35395

Realtek · AP-Router SDK

Realtek AP-Router SDK Buffer Overflow Vulnerability

Date added
BOD 22-01 due date
CWE CWE-20, CWE-122
Ransomware Unknown

CISA description

Realtek AP-Router SDK HTTP web server boa contains a buffer overflow vulnerability due to unsafe copies of some overly long parameters submitted in the form that lead to denial-of-service (DoS).

Required action

Apply updates per vendor instructions.