First published: Mon Jan 30 2017(Updated: )
The NETGEAR WNR2000v5 router contains a buffer overflow in the hidden_lang_avi parameter when invoking the URL /apply.cgi?/lang_check.html. This buffer overflow can be exploited by an unauthenticated attacker to achieve remote code execution.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Netgear Wnr2000v5 Firmware | <=1.0.0.34 | |
NETGEAR WNR2000v5 | ||
NETGEAR WNR2000v5 router | ||
All of | ||
Netgear D6100 Firmware | ||
NETGEAR D6100 | ||
All of | ||
Netgear D7000 Firmware | ||
NETGEAR D7000 | ||
All of | ||
Netgear D7800 Firmware | ||
Netgear D7800 | ||
All of | ||
Netgear Jnr1010v2 Firmware | ||
Netgear Jnr1010v2 | ||
All of | ||
Netgear Jnr3300 Firmware | ||
Netgear Jnr3300 | ||
All of | ||
Netgear Jwnr2010v5 Firmware | ||
Netgear Jwnr2010v5 | ||
All of | ||
Netgear R2000 Firmware | ||
Netgear R2000 | ||
All of | ||
Netgear R6100 Firmware | ||
Netgear R6100 | ||
All of | ||
Netgear R6220 Firmware | ||
NETGEAR R6220 | ||
All of | ||
Netgear R7500 Firmware | ||
Netgear R7500 | ||
All of | ||
Netgear R7500v2 Firmware | ||
Netgear R7500v2 | ||
All of | ||
Netgear Wndr3700v4 Firmware | ||
Netgear Wndr3700v4 | ||
All of | ||
Netgear Wndr3800 Firmware | ||
Netgear Wndr3800 | ||
All of | ||
Netgear Wndr4300 Firmware | ||
Netgear Wndr4300 | ||
All of | ||
Netgear Wndr4300v2 Firmware | ||
Netgear Wndr4300v2 | ||
All of | ||
Netgear Wndr4500v3 Firmware | ||
Netgear Wndr4500v3 | ||
All of | ||
Netgear Wndr4700 Firmware | ||
NETGEAR WNDR4700 | ||
All of | ||
Netgear Wnr1000v2 Firmware | ||
Netgear Wnr1000v2 | ||
All of | ||
Netgear Wnr1000v4 Firmware | ||
Netgear Wnr1000v4 | ||
All of | ||
Netgear Wnr2000v3 Firmware | ||
NETGEAR WNR2000v3 | ||
All of | ||
Netgear Wnr2000v4 Firmware | ||
Netgear Wnr2000v4 | ||
All of | ||
Netgear Wnr2000v5 Firmware | ||
NETGEAR WNR2000v5 | ||
All of | ||
Netgear Wnr2020 Firmware | ||
Netgear Wnr2020 | ||
All of | ||
Netgear Wnr2050 Firmware | ||
Netgear Wnr2050 | ||
All of | ||
Netgear Wnr2200 Firmware | ||
Netgear Wnr2200 | ||
All of | ||
Netgear Wnr2500 Firmware | ||
Netgear Wnr2500 | ||
All of | ||
Netgear Wnr614 Firmware | ||
Netgear WNR614 | ||
All of | ||
Netgear Wnr618 Firmware | ||
Netgear Wnr618 |
http://kb.netgear.com/000036549/Insecure-Remote-Access-and-Command-Execution-Security-Vulnerability
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.