CVE-2021-28196
published 2021-04-06CVE-2021-28196: The specific function in ASUS BMC’s firmware Web management page (Generate SSL certificate function) does not verify the string length entered by users…
PriorityP421medium4.9CVSS 3.1
AVNACLPRHUINSUCNINAH
EPSS
1.15%
63.3th percentile
The specific function in ASUS BMC’s firmware Web management page (Generate SSL certificate function) does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.
Affected
88 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| asus | asmb9-ikvm_firmware | — | — |
| asus | bmc_firmware_for_asmb9-ikvm | — | — |
| asus | bmc_firmware_for_e700_g4 | — | — |
| asus | bmc_firmware_for_esc4000_dhd_g4 | — | — |
| asus | bmc_firmware_for_esc4000_g4 | — | — |
| asus | bmc_firmware_for_esc4000_g4x | — | — |
| asus | bmc_firmware_for_esc8000_g4 | — | — |
| asus | bmc_firmware_for_esc8000_g4_10g | — | — |
| asus | bmc_firmware_for_knpa-u16 | — | — |
| asus | bmc_firmware_for_pro_e800_g4 | — | — |
| asus | bmc_firmware_for_rs100-e10-pi2 | — | — |
| asus | bmc_firmware_for_rs300-e10-ps4 | — | — |
| asus | bmc_firmware_for_rs300-e10-rs4 | — | — |
| asus | bmc_firmware_for_rs500-e9-ps4 | — | — |
| asus | bmc_firmware_for_rs500-e9-rs4 | — | — |
| asus | bmc_firmware_for_rs500-e9-rs4-u | — | — |
| asus | bmc_firmware_for_rs500a-e10-ps4 | — | — |
| asus | bmc_firmware_for_rs500a-e10-rs4 | — | — |
| asus | bmc_firmware_for_rs500a-e9-ps4 | — | — |
| asus | bmc_firmware_for_rs500a-e9-rs4 | — | — |
| asus | bmc_firmware_for_rs500a-e9_rs4 | — | — |
| asus | bmc_firmware_for_rs520-e9-rs12-e | — | — |
| asus | bmc_firmware_for_rs520-e9-rs8 | — | — |
| asus | bmc_firmware_for_rs700-e9-rs12 | — | — |
| asus | bmc_firmware_for_rs700-e9-rs4 | — | — |
CVSS provenance
nvdv3.14.9MEDIUMCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:P
vendor_oracle7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-jvv6-hfxg-55hg: The specific function in ASUS BMC’s firmware Web management page (Generate SSL certificate function) does not verify the string length entered by user
ghsa_unreviewed·2022-05-24
CVE-2021-28196 [MEDIUM] CWE-120 GHSA-jvv6-hfxg-55hg: The specific function in ASUS BMC’s firmware Web management page (Generate SSL certificate function) does not verify the string length entered by user
The specific function in ASUS BMC’s firmware Web management page (Generate SSL certificate function) does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.
Oracle
Oracle Oracle Communications Applications Risk Matrix: NM Core (Kerberos) — CVE-2020-28196
vendor_oracle·2021-07-15·CVSS 7.5
CVE-2020-28196 [HIGH] Oracle Oracle Communications Applications Risk Matrix: NM Core (Kerberos) — CVE-2020-28196
Oracle Oracle Communications Applications Risk Matrix: NM Core (Kerberos) vulnerability
CVE: CVE-2020-28196
CVSS: 7.5
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpujul2021 (JUL 2021)
Oracle
Oracle Oracle MySQL Risk Matrix: Server: Security: Encryption (MIT Kerberos) — CVE-2020-28196
vendor_oracle·2021-04-15·CVSS 7.5
CVE-2020-28196 [HIGH] Oracle Oracle MySQL Risk Matrix: Server: Security: Encryption (MIT Kerberos) — CVE-2020-28196
Oracle Oracle MySQL Risk Matrix: Server: Security: Encryption (MIT Kerberos) vulnerability
CVE: CVE-2020-28196
CVSS: 7.5
Protocol: MySQL Protocol
Remote exploit: Yes
Affected versions: Network
Advisory: cpuapr2021 (APR 2021)
No detection rules found.
No public exploits indexed.
https://www.asus.com/content/ASUS-Product-Security-Advisory/https://www.asus.com/tw/support/callus/https://www.twcert.org.tw/tw/cp-132-4566-9154b-1.htmlhttps://www.asus.com/content/ASUS-Product-Security-Advisory/https://www.asus.com/tw/support/callus/https://www.twcert.org.tw/tw/cp-132-4566-9154b-1.html
2021-04-06
Published