CVE-2018-21201: Buffer Overflow
Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects D6100 before 1.0.0.57, R6100 before 1.0.1.20, R7800 before 1.0.2.40, R9000 before 1.0.2.52, WNDR3700v4 before 1.0.2.92, WNDR4300 before 1.0.2.94, WNDR4300v2 before 1.0.0.50, WNDR4500v3 before 1.0.0.50, and WNR2000v5 before 1.0.0.62.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-21201?
CVE-2018-21201 is a vulnerability that affects certain NETGEAR devices and allows an authenticated user to execute a stack-based buffer overflow.
Which NETGEAR devices are affected by CVE-2018-21201?
Devices affected by CVE-2018-21201 include D6100 before 1.0.0.57, R6100 before 1.0.1.20, R7800 before 1.0.2.40, R9000 before 1.0.2.52, WNDR3700v4 before 1.0.2.92, WNDR4300 before 1.0.2.94, WNDR4300v2 before 1.0.0.50, and WNDR4500v3 before 1.0.0.50.
What is the severity of CVE-2018-21201?
CVE-2018-21201 has a severity score of 6.8, which is considered medium.
How can an authenticated user exploit CVE-2018-21201?
An authenticated user can exploit CVE-2018-21201 by executing a stack-based buffer overflow, allowing them to gain unauthorized access or crash the affected device.
Is there a fix for CVE-2018-21201? How can it be fixed?
Yes, there is a fix for CVE-2018-21201. Users should update their affected NETGEAR devices to the latest firmware versions provided by NETGEAR.