Medium severity4.9NVD Advisory· Published Apr 6, 2021· Updated Jun 17, 2026
CVE-2021-28181
CVE-2021-28181
Description
The specific function in ASUS BMC’s firmware Web management page (Remote video configuration setting) does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
71.14.51+ 1 more
- (no CPE)range: 1.14.51
- cpe:2.3:o:asus:z10pr-d16_firmware:1.14.51:*:*:*:*:*:*:*
1.14.51+ 1 more
- (no CPE)range: 1.14.51
- cpe:2.3:o:asus:asmb8-ikvm_firmware:1.14.51:*:*:*:*:*:*:*
1.14.2+ 1 more
- (no CPE)range: 1.14.2
- cpe:2.3:o:asus:z10pe-d16_ws_firmware:1.14.2:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
3- www.asus.com/content/ASUS-Product-Security-Advisory/nvdVendor Advisory
- www.asus.com/tw/support/callus/nvdVendor Advisory
- www.twcert.org.tw/tw/cp-132-4551-5dd2f-1.htmlnvdThird Party Advisory
News mentions
0No linked articles in our index yet.