CVE-2022-24655: High severity netgear ex6100 vulnerability
Published Mar 18, 2022
·Updated
A stack overflow vulnerability exists in the upnpd service in Netgear EX6100v1 201.0.2.28, CAX80 2.1.2.6, and DC112A 1.0.0.62, which may lead to the execution of arbitrary code without authentication.
Affected Software
8 affected components
Netgear Ex6100 Firmware=201.0.2.28
Netgear EX6100
Netgear Ex6200 Firmware
Netgear EX6200
Netgear Cax80 Firmware=2.1.2.6
Netgear CAX80
Netgear Dc112a Firmware=1.0.0.62
Netgear DC112A
Remediation
Event History
Mar 18, 2022
CVE Published
via MITRE·10:12 AM
Data Sourced
via MITRE·10:12 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-24655?
The severity of CVE-2022-24655 is high with a severity value of 7.8.
2
What is the affected software for CVE-2022-24655?
The affected software for CVE-2022-24655 includes Netgear EX6100v1 201.0.2.28, CAX80 2.1.2.6, and DC112A 1.0.0.62.
3
What is the vulnerability in CVE-2022-24655?
CVE-2022-24655 is a stack overflow vulnerability in the upnpd service.
4
Can CVE-2022-24655 lead to the execution of arbitrary code?
Yes, CVE-2022-24655 can lead to the execution of arbitrary code without authentication.
5
Are there any references for CVE-2022-24655?
Yes, references for CVE-2022-24655 can be found at the following links: [link1], [link2], [link3].