First published: Wed Mar 29 2023(Updated: )
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700v3 1.0.4.120_10.0.91 routers. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within the circled daemon. A crafted circleinfo.txt file can trigger an overflow of a fixed-length stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-15879.
Credit: zdi-disclosures@trendmicro.com
Affected Software | Affected Version | How to fix |
---|---|---|
NETGEAR R6700v3 firmware | ||
NETGEAR R6400 firmware | <1.0.4.126 | |
NETGEAR R6400 firmware | =v2 | |
NETGEAR R6700 firmware | <1.0.4.126 | |
NETGEAR R6700v1 firmware | =v3 | |
NETGEAR R6900P firmware | <1.3.3.148 | |
Netgear R6900 Firmware | ||
Netgear Nighthawk R7000 Firmware | <1.0.11.134 | |
NETGEAR Nighthawk R7000 | ||
NETGEAR R7000P firmware | <1.3.3.148 | |
Netgear Routers | ||
NETGEAR R7850 | <1.0.5.84 | |
NETGEAR R7850 firmware | ||
NETGEAR R7960P firmware | <1.4.3.88 | |
NETGEAR R7960P firmware | ||
NETGEAR R8000 firmware | <1.0.4.84 | |
NETGEAR R8000 firmware | ||
NETGEAR R8000P | <1.4.3.88 | |
NETGEAR R8000P firmware | ||
NETGEAR RAX200 firmware | <1.0.6.138 | |
NETGEAR RAX200 firmware | ||
NETGEAR RAX75 firmware | <1.0.6.138 | |
NETGEAR RAX75 firmware | ||
NETGEAR RAX80 Firmware | <1.0.6.138 | |
NETGEAR RAX80 firmware | ||
NETGEAR RS400 firmware | <1.5.1.86 | |
NETGEAR RS400 firmware | ||
NETGEAR CBR40 firmware | <2.5.0.28 | |
Netgear CBR40 | ||
NETGEAR LBR1020 firmware | <2.7.4.2 | |
NETGEAR LBR1020 firmware | ||
NETGEAR LBR20 firmware | <2.7.4.2 | |
NETGEAR LBR20 firmware | ||
NETGEAR RBR10 firmware | <2.7.4.24 | |
NETGEAR RBR10 firmware | ||
NETGEAR RBR20 | <2.7.4.24 | |
NETGEAR RBR20 | ||
NETGEAR CBR40 firmware | <2.7.4.24 | |
NETGEAR RBR40 firmware | ||
NETGEAR RBR50 firmware | <2.7.4.24 | |
NETGEAR RBR50 firmware | ||
NETGEAR RBS10 | <2.7.4.24 | |
NETGEAR RBS10 firmware | ||
NETGEAR RBS20 | <2.7.4.24 | |
NETGEAR RBS20 firmware | ||
NETGEAR RBS40 Firmware | <2.7.4.24 | |
NETGEAR RBS40 firmware | ||
NETGEAR RBS50 Firmware | <2.7.4.24 | |
NETGEAR RBS50 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this NETGEAR R6700v3 vulnerability is CVE-2022-27646.
The severity of CVE-2022-27646 is high, with a CVSS score of 8.8.
An attacker can exploit CVE-2022-27646 by executing arbitrary code on affected installations of NETGEAR R6700v3 routers.
Yes, authentication is required to exploit CVE-2022-27646, but the existing authentication mechanism can be bypassed.
No, only NETGEAR R6700v3 routers are affected by CVE-2022-27646.