7.5

CVE-2021-3128

In ASUS RT-AX3000, ZenWiFi AX (XT8), RT-AX88U, and other ASUS routers with firmware < 3.0.0.4.386.42095 or < 9.0.0.4.386.41994, when IPv6 is used, a routing loop can occur that generates excessive network traffic between an affected device and its upstream ISP's router. This occurs when a link prefix route points to a point-to-point link, a destination IPv6 address belongs to the prefix and is not a local IPv6 address, and a router advertisement is received with at least one global unique IPv6 prefix for which the on-link flag is set.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
AsusZenwifi Ax (xt8) Firmware Version < 3.0.0.4.386.42095
   AsusZenwifi Ax (xt8) Version-
AsusZenwifi Ax (xt8) Firmware Version < 9.0.0.4.386.41994
   AsusZenwifi Ax (xt8) Version-
AsusRt-ax3000 Firmware Version < 3.0.0.4.386.42095
   AsusRt-ax3000 Version-
AsusRt-ax3000 Firmware Version < 9.0.0.4.386.41994
   AsusRt-ax3000 Version-
AsusRt-ax55 Firmware Version < 3.0.0.4.386.42095
   AsusRt-ax55 Version-
AsusRt-ax55 Firmware Version < 9.0.0.4.386.41994
   AsusRt-ax55 Version-
AsusRt-ax56u Firmware Version < 3.0.0.4.386.42095
   AsusRt-ax56u Version-
AsusRt-ax56u Firmware Version < 9.0.0.4.386.41994
   AsusRt-ax56u Version-
AsusRt-ax58u Firmware Version < 3.0.0.4.386.42095
   AsusRt-ax58u Version-
AsusRt-ax58u Firmware Version < 9.0.0.4.386.41994
   AsusRt-ax58u Version-
AsusRt-ax68u Firmware Version < 3.0.0.4.386.42095
   AsusRt-ax68u Version-
AsusRt-ax68u Firmware Version < 9.0.0.4.386.41994
   AsusRt-ax68u Version-
AsusRt-ax82u Firmware Version < 3.0.0.4.386.42095
   AsusRt-ax82u Version-
AsusRt-ax82u Firmware Version < 9.0.0.4.386.41994
   AsusRt-ax82u Version-
AsusRt-ax86u Firmware Version < 3.0.0.4.386.42095
   AsusRt-ax86u Version-
AsusRt-ax86u Firmware Version < 9.0.0.4.386.41994
   AsusRt-ax86u Version-
AsusRt-ax88u Firmware Version < 3.0.0.4.386.42095
   AsusRt-ax88u Version-
AsusRt-ax88u Firmware Version < 9.0.0.4.386.41994
   AsusRt-ax88u Version-
AsusRt-ac66u B1 Firmware Version < 3.0.0.4.386.42095
   AsusRt-ac66u B1 Version-
AsusRt-ac66u B1 Firmware Version < 9.0.0.4.386.41994
   AsusRt-ac66u B1 Version-
AsusRt-ac1750 B1 Firmware Version < 3.0.0.4.386.42095
   AsusRt-ac1750 B1 Version-
AsusRt-ac1750 B1 Firmware Version < 9.0.0.4.386.41994
   AsusRt-ac1750 B1 Version-
AsusRt-ac1900 Firmware Version < 3.0.0.4.386.42095
   AsusRt-ac1900 Version-
AsusRt-ac1900 Firmware Version < 9.0.0.4.386.41994
   AsusRt-ac1900 Version-
AsusRt-ac1900p Firmware Version < 3.0.0.4.386.42095
   AsusRt-ac1900p Version-
AsusRt-ac1900p Firmware Version < 9.0.0.4.386.41994
   AsusRt-ac1900p Version-
AsusRt-ac1900u Firmware Version < 3.0.0.4.386.42095
   AsusRt-ac1900u Version-
AsusRt-ac1900u Firmware Version < 9.0.0.4.386.41994
   AsusRt-ac1900u Version-
AsusRt-ac2900 Firmware Version < 3.0.0.4.386.42095
   AsusRt-ac2900 Version-
AsusRt-ac2900 Firmware Version < 9.0.0.4.386.41994
   AsusRt-ac2900 Version-
AsusRt-ac3100 Firmware Version < 3.0.0.4.386.42095
   AsusRt-ac3100 Version-
AsusRt-ac3100 Firmware Version < 9.0.0.4.386.41994
   AsusRt-ac3100 Version-
AsusRt-ac5300 Firmware Version < 3.0.0.4.386.42095
   AsusRt-ac5300 Version-
AsusRt-ac5300 Firmware Version < 9.0.0.4.386.41994
   AsusRt-ac5300 Version-
AsusRt-ac58u Firmware Version < 3.0.0.4.386.42095
   AsusRt-ac58u Version-
AsusRt-ac58u Firmware Version < 9.0.0.4.386.41994
   AsusRt-ac58u Version-
AsusRt-ac65u Firmware Version < 3.0.0.4.386.42095
   AsusRt-ac65u Version-
AsusRt-ac65u Firmware Version < 9.0.0.4.386.41994
   AsusRt-ac65u Version-
AsusRt-ac68p Firmware Version < 3.0.0.4.386.42095
   AsusRt-ac68p Version-
AsusRt-ac68p Firmware Version < 9.0.0.4.386.41994
   AsusRt-ac68p Version-
AsusRt-ac68r Firmware Version < 3.0.0.4.386.42095
   AsusRt-ac68r Version-
AsusRt-ac68r Firmware Version < 9.0.0.4.386.41994
   AsusRt-ac68r Version-
AsusRt-ac68rw Firmware Version < 3.0.0.4.386.42095
   AsusRt-ac68rw Version-
AsusRt-ac68rw Firmware Version < 9.0.0.4.386.41994
   AsusRt-ac68rw Version-
AsusRt-ac68u Firmware Version < 3.0.0.4.386.42095
   AsusRt-ac68u Version-
AsusRt-ac68u Firmware Version < 9.0.0.4.386.41994
   AsusRt-ac68u Version-
AsusRt-ac68w Firmware Version < 3.0.0.4.386.42095
   AsusRt-ac68w Version-
AsusRt-ac68w Firmware Version < 9.0.0.4.386.41994
   AsusRt-ac68w Version-
AsusRt-ac85u Firmware Version < 3.0.0.4.386.42095
   AsusRt-ac85u Version-
AsusRt-ac85u Firmware Version < 9.0.0.4.386.41994
   AsusRt-ac85u Version-
AsusRt-ac86u Firmware Version < 3.0.0.4.386.42095
   AsusRt-ac86u Version-
AsusRt-ac86u Firmware Version < 9.0.0.4.386.41994
   AsusRt-ac86u Version-
AsusRt-ac88u Firmware Version < 3.0.0.4.386.42095
   AsusRt-ac88u Version-
AsusRt-ac88u Firmware Version < 9.0.0.4.386.41994
   AsusRt-ac88u Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2.48% 0.844
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P
CWE-834 Excessive Iteration

The product performs an iteration or loop without sufficiently limiting the number of times that the loop is executed.