Netgear R7000P V1.3.0.8 is vulnerable to Buffer Overflow via parameters apmode_dns1_pri and apmode_dns1_sec.
References
Link | Resource |
---|---|
http://netgear.com | Vendor Advisory |
http://routerlogin.net/WLG_ap_dual_band.htm | Third Party Advisory |
https://www.netgear.com/about/security/ | Vendor Advisory |
https://github.com/RobinWang825/IoT_vuln/tree/main/Netgear/R7000P/11 | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
23 Nov 2022, 18:51
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:o:netgear:r7000p_firmware:1.3.0.8:*:*:*:*:*:*:* cpe:2.3:h:netgear:r7000p:-:*:*:*:*:*:*:* |
|
First Time |
Netgear
Netgear r7000p Firmware Netgear r7000p |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
CWE | CWE-787 | |
References | (MISC) http://routerlogin.net/WLG_ap_dual_band.htm - Third Party Advisory | |
References | (MISC) http://netgear.com - Vendor Advisory | |
References | (MISC) https://www.netgear.com/about/security/ - Vendor Advisory | |
References | (MISC) https://github.com/RobinWang825/IoT_vuln/tree/main/Netgear/R7000P/11 - Exploit, Third Party Advisory |
22 Nov 2022, 14:33
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-11-22 14:15
Updated : 2022-11-23 18:51
NVD link : CVE-2022-44194
Mitre link : CVE-2022-44194
CVE.ORG link : CVE-2022-44194
JSON object : View
Products Affected
netgear
- r7000p
- r7000p_firmware
CWE
CWE-787
Out-of-bounds Write