Description

FiberHome AN5506-04-FA firmware versions up to and including RP2631 and HG6245D prior to RP2602 contain a stack-based buffer overflow, as the HTTP service ('webs') fails to enforce maximum lengths for Cookie header values. When a cookie longer than 511 bytes is processed, a stack buffer is overrun, leading to a crash or potential control of execution flow.

INFO

Published Date :

2025-11-12T22:09:20.835Z

Last Modified :

2025-11-13T14:35:47.050Z

Source :

VulnCheck
AFFECTED PRODUCTS

The following products are affected by CVE-2021-4464 vulnerability.

Vendors Products
Fiberhome
  • An5506-04-fa
  • Hg6245d

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
VS Confidentiality
VS Integrity
VS Availability
SS Confidentiality
SS Integrity
SS Availability