First published: Mon Aug 07 2023(Updated: )
Netgear JWNR2000v2 v1.0.0.11, XWN5001 v0.4.1.1, and XAVN2001v2 v0.4.0.7 were discovered to contain multiple buffer overflows via the http_passwd and http_username parameters in the update_auth function.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Netgear JWNR2000v2 firmware | =1.0.0.11 | |
Netgear JWNR2000v2 firmware | ||
Netgear XWN5001 Firmware | =0.4.1.1 | |
Netgear XWN5001 firmware | ||
Kaonmedia Cg2001-un2na Firmware | =0.4.0.7 | |
Netgear XAVN2001v2 firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Netgear issue is CVE-2023-38922.
The severity rating of CVE-2023-38922 is high.
Netgear JWNR2000v2 v1.0.0.11, Netgear XWN5001 v0.4.1.1, and Netgear XAVN2001v2 v0.4.0.7 are affected by CVE-2023-38922.
CVE-2023-38922 is a buffer overflow vulnerability.
Yes, Netgear has released firmware updates to address the buffer overflow vulnerabilities in affected products.