CVE-2019-20657: Buffer Overflow
Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects D6200 before 1.1.00.36, D7000 before 1.0.1.74, PR2000 before 1.0.0.28, R6020 before 1.0.0.42, R6080 before 1.0.0.42, R6050 before 1.0.1.24, JR6150 before 1.0.1.24, R6120 before 1.0.0.48, R6220 before 1.1.0.86, R6230 before 1.1.0.86, R6260 before 1.1.0.64, R6700v2 before 1.2.0.62, R6800 before 1.2.0.62, R6900v2 before 1.2.0.62, and WNR2020 before 1.1.0.62.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2019-20657.
Which devices are affected by this vulnerability?
This vulnerability affects certain NETGEAR devices including D6200, D7000, PR2000, R6020, R6080, R6050, JR6150, R6120, R6220, and more.
What is the severity of CVE-2019-20657?
The severity of CVE-2019-20657 is high, with a severity value of 8.
How can an authenticated user exploit this vulnerability?
An authenticated user can exploit this vulnerability through a buffer overflow.
Where can I find more information about this vulnerability?
You can find more information about this vulnerability in Netgear's security advisory: https://kb.netgear.com/000061482/Security-Advisory-for-Post-Authentication-Buffer-Overflow-on-Some-Routers-and-Gateways-PSV-2018-0619