First published: Wed Apr 22 2020(Updated: )
Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects R7800 before 1.0.2.36, PLW1000v2 before 1.0.0.14, and PLW1010v2 before 1.0.0.14.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
NETGEAR R7800 firmware | <1.0.2.36 | |
NETGEAR R7800 | ||
NETGEAR PLW1000 firmware | <1.0.0.14 | |
NETGEAR PLW1000 firmware | =v2 | |
NETGEAR PLW1010 | <1.0.0.14 | |
NETGEAR PLW1010 firmware | =v2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-18770 is classified as a medium severity vulnerability due to the potential for unauthorized access leading to a buffer overflow.
To fix CVE-2017-18770, update your NETGEAR R7800 to firmware version 1.0.2.36 or later, or update your NETGEAR PLW1000 and PLW1010 to firmware version 1.0.0.14 or later.
The affected devices include NETGEAR R7800, PLW1000v2, and PLW1010v2 running on outdated firmware.
CVE-2017-18770 requires authentication to exploit, but it poses risks of further compromise if exploited by an authenticated user.
Users of affected NETGEAR devices should promptly apply firmware updates to avoid the risks associated with potential unauthorized control.