CVE-2023-38412: Buffer Overflow
Published Aug 7, 2023
·Updated
Netgear R6900P v1.3.3.154 was discovered to contain multiple buffer overflows via the wlassid and wlgssid parameters at iaapsetting.cgi.
Affected Software
2 affected components
Netgear R6900p Firmware=1.3.3.154
Netgear R6900P
Event History
Aug 7, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this Netgear R6900P issue?
The vulnerability ID for this Netgear R6900P issue is CVE-2023-38412.
2
What is the severity of CVE-2023-38412?
The severity of CVE-2023-38412 is rated as high with a severity value of 8.8.
3
Which parameters in Netgear R6900P are affected by CVE-2023-38412?
The wla_ssid and wlg_ssid parameters at ia_ap_setting.cgi are affected by CVE-2023-38412.
4
Can you provide the link to the detailed description of CVE-2023-38412?
For a detailed description of CVE-2023-38412, you can refer to the GitHub page at https://github.com/FirmRec/IoT-Vulns/blob/main/netgear/nvram_ssid/README.md.
5
Where can I find more information about Netgear R6900P security?
You can find more information about Netgear R6900P security on the Netgear website at https://www.netgear.com/about/security/.