First published: Fri May 26 2017(Updated: )
NETGEAR WNR2000v3 devices before 1.1.2.14, WNR2000v4 devices before 1.0.0.66, and WNR2000v5 devices before 1.0.0.42 allow authentication bypass and remote code execution via a buffer overflow that uses a parameter in the administration webapp. The NETGEAR ID is PSV-2016-0261.
Credit: cve@mitre.org a2826606-91e7-4eb6-899e-8484bd4575d5
Affected Software | Affected Version | How to fix |
---|---|---|
Netgear Wnr2000v5 Firmware | <=1.0.0.41 | |
NETGEAR WNR2000v5 | ||
Netgear Wnr2000v4 Firmware | <=1.0.0.65 | |
Netgear Wnr2000v4 | ||
Netgear Wnr2000v3 Firmware | <=1.1.2.13 | |
NETGEAR WNR2000v3 | ||
All of | ||
Netgear Wnr2000v5 Firmware | <1.0.0.42 | |
NETGEAR WNR2000v5 | ||
All of | ||
Netgear Wnr2000v4 Firmware | <1.0.0.66 | |
Netgear Wnr2000v4 | ||
All of | ||
Netgear Wnr2000v3 Firmware | <1.1.2.14 | |
NETGEAR WNR2000v3 | ||
NETGEAR Multiple Devices | ||
All of | ||
<1.0.0.42 | ||
All of | ||
<1.0.0.66 | ||
All of | ||
<1.1.2.14 | ||
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.