CVE-2022-46423: High severity netgear wnr2000v2 vulnerability
An exploitable firmware modification vulnerability was discovered on the Netgear WNR2000v1 router. An attacker can conduct a MITM (Man-in-the-Middle) attack to modify the user-uploaded firmware image and bypass the CRC check, allowing attackers to execute arbitrary code or cause a Denial of Service (DoS). This affects v1.2.3.7 and earlier.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-46423?
CVE-2022-46423 is a firmware modification vulnerability found in the Netgear WNR2000v1 router.
What is the severity of CVE-2022-46423?
The severity of CVE-2022-46423 is high with a CVSS score of 8.1.
How does CVE-2022-46423 work?
CVE-2022-46423 allows an attacker to conduct a MITM (Man-in-the-Middle) attack to modify the user-uploaded firmware image and bypass the CRC check, enabling them to execute arbitrary code or cause a Denial of Service.
Which Netgear WNR2000 firmware versions are affected by CVE-2022-46423?
Netgear WNR2000 firmware versions up to and including 1.2.3.7 are affected by CVE-2022-46423.
How can I fix CVE-2022-46423?
To fix CVE-2022-46423, it is recommended to update to the latest firmware version provided by Netgear.