CVE-2023-39550: Buffer Overflow
Netgear JWNR2000v2 v1.0.0.11, XWN5001 v0.4.1.1, and XAVN2001v2 v0.4.0.7 were discovered to contain multiple buffer overflows via the httppasswd and httpusername parameters in the checkauth function.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-39550?
CVE-2023-39550 is a vulnerability found in Netgear JWNR2000v2, XWN5001, and XAVN2001v2 devices that allows for multiple buffer overflows via the http_passwd and http_username parameters.
What is the severity of CVE-2023-39550?
The severity of CVE-2023-39550 is high with a severity value of 8.8.
How can CVE-2023-39550 be exploited?
CVE-2023-39550 can be exploited by sending malicious input to the http_passwd and http_username parameters in the check_auth function.
Which Netgear devices are affected by CVE-2023-39550?
Netgear JWNR2000v2 v1.0.0.11, XWN5001 v0.4.1.1, and XAVN2001v2 v0.4.0.7 are affected by CVE-2023-39550.
How can I fix CVE-2023-39550?
To fix CVE-2023-39550, it is recommended to update the firmware of the affected Netgear devices to the latest version.