CVE-2017-18770: Buffer Overflow

Published Apr 22, 2020
·
Updated

Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects R7800 before 1.0.2.36, PLW1000v2 before 1.0.0.14, and PLW1010v2 before 1.0.0.14.

Affected Software

6 affected components
Netgear R7800 firmware<1.0.2.36
Netgear R7800
Netgear Plw1000 Firmware<1.0.0.14
Netgear PLW1000=v2
Netgear Plw1010 Firmware<1.0.0.14
Netgear PLW1010=v2

Event History

Apr 22, 2020
CVE Published
via MITRE·02:49 PM
Data Sourced
via MITRE·02:49 PM
DescriptionSeverity
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2017-18770?

CVE-2017-18770 is classified as a medium severity vulnerability due to the potential for unauthorized access leading to a buffer overflow.

2

How do I fix CVE-2017-18770?

To fix CVE-2017-18770, update your NETGEAR R7800 to firmware version 1.0.2.36 or later, or update your NETGEAR PLW1000 and PLW1010 to firmware version 1.0.0.14 or later.

3

Which NETGEAR devices are affected by CVE-2017-18770?

The affected devices include NETGEAR R7800, PLW1000v2, and PLW1010v2 running on outdated firmware.

4

Can CVE-2017-18770 be exploited remotely?

CVE-2017-18770 requires authentication to exploit, but it poses risks of further compromise if exploited by an authenticated user.

5

What are the implications of CVE-2017-18770 for users?

Users of affected NETGEAR devices should promptly apply firmware updates to avoid the risks associated with potential unauthorized control.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203