CVE-2024-51014: Medium severity netgear nms300 firmware vulnerability
Netgear XR300 v1.0.3.78 was discovered to contain a stack overflow via the ssidan parameter in bridgewirelessmain.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-51014?
CVE-2024-51014 is classified as a medium severity vulnerability due to its potential to cause a Denial of Service.
How do I fix CVE-2024-51014?
To mitigate CVE-2024-51014, upgrading to the latest firmware version provided by Netgear is recommended.
What impact does CVE-2024-51014 have on Netgear XR300 devices?
CVE-2024-51014 can lead to a Denial of Service, disrupting the availability of the affected Netgear XR300 device.
Is CVE-2024-51014 remotely exploitable?
Yes, CVE-2024-51014 can be exploited remotely through crafted POST requests targeting the vulnerable parameter.
What component of the Netgear XR300 is affected by CVE-2024-51014?
CVE-2024-51014 affects the bridge_wireless_main.cgi component where the ssid_an parameter is processed.