CVE-2021-20166: Buffer Overflow
Published Dec 30, 2021
·Updated
Netgear RAX43 version 1.0.3.96 contains a buffer overrun vulnerability. The URL parsing functionality in the cgi-bin endpoint of the router containers a buffer overrun issue that can redirection control flow of the applicaiton.
Affected Software
2 affected components
Netgear Rax43 Firmware=1.0.3.96
Netgear RAX43
Event History
Dec 30, 2021
CVE Published
via MITRE·09:31 PM
Data Sourced
via MITRE·09:31 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2021-20166?
CVE-2021-20166 is a buffer overrun vulnerability in Netgear RAX43 version 1.0.3.96.
2
What is the severity of CVE-2021-20166?
CVE-2021-20166 has a severity value of 8.8 (high).
3
What software versions are affected by CVE-2021-20166?
Netgear RAX43 version 1.0.3.96 is affected by CVE-2021-20166.
4
How does CVE-2021-20166 impact the router?
CVE-2021-20166 can allow an attacker to control the redirection flow of the Netgear RAX43 router.
5
Is Netgear RAX43 vulnerable to CVE-2021-20166?
Netgear RAX43 version 1.0.3.96 is vulnerable to CVE-2021-20166.