← Back

CVE-2021-21966

nvd nist
Published: Feb 16, 2022Modified: Jun 17, 2026

JSON object

Loading...
5.3
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Exploitability: 3.9 / Impact: 1.4
Source: NVD

Description

An information disclosure vulnerability exists in the HTTP Server /ping.html functionality of Texas Instruments CC3200 SimpleLink Solution NWP 2.9.0.0. A specially-crafted HTTP request can lead to an uninitialized read. An attacker can send an HTTP request to trigger this vulnerability.

Affected (3)

3 products
Cc3100 Firmware
Cc3200 Firmware
Configuration A
1 vulnerable · 10 platform
Vulnerable SoftwareAffected Versions
Before 5.30.00.08
Running on/withPlatform Versions
Ti
Cc3120
All versions
Ti
Cc3130
All versions
Ti
Cc3135
All versions
Ti
Cc3220r
All versions
Ti
Cc3220s
All versions
Ti
Cc3220sf
All versions
Ti
Cc3230s
All versions
Ti
Cc3230sf
All versions
Ti
Cc3235s
All versions
Ti
Cc3235sf
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.0.1.15-2.15.0.1
Running on/withPlatform Versions
Ti
Cc3100
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.0.1.15-2.15.0.1
Running on/withPlatform Versions
Ti
Cc3200
All versions

References (3)

Source: talos-cna@cisco.com
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory

Timeline

No history available yet.