First published: Fri Mar 10 2023(Updated: )
NETGEAR Nighthawk WiFi6 Router prior to V1.0.10.94 contains a format string vulnerability in a SOAP service that could allow an attacker to execute arbitrary code on the device.
Credit: vulnreport@tenable.com
Affected Software | Affected Version | How to fix |
---|---|---|
Netgear Rax30 Firmware | <1.0.10.94 | |
Netgear RAX30 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-27853 is a format string vulnerability in a SOAP service of NETGEAR Nighthawk WiFi6 Router prior to V1.0.10.94 that could allow an attacker to execute arbitrary code on the device.
CVE-2023-27853 has a severity level of critical with a CVSS score of 9.8.
NETGEAR Nighthawk WiFi6 Router firmware versions prior to V1.0.10.94 are affected by CVE-2023-27853.
An attacker can exploit CVE-2023-27853 by sending a specially crafted request to the SOAP service, resulting in arbitrary code execution on the device.
No, NETGEAR RAX30 is not vulnerable to CVE-2023-27853.