ZDI-CAN-19981: ZDI-23-893: NETGEAR Multiple Routers curl_post Improper Certificate Validation Remote Code Execution Vulnerability
This vulnerability allows network-adjacent attackers to compromise the integrity of downloaded information on affected installations of multiple NETGEAR routers. Authentication is not required to exploit this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-19981?
ZDI-CAN-19981 is rated as a critical vulnerability due to the potential for network-adjacent attackers to compromise the integrity of data.
How do I fix ZDI-CAN-19981?
To fix ZDI-CAN-19981, ensure that your NETGEAR router firmware is updated to the latest version provided by NETGEAR.
Who is affected by ZDI-CAN-19981?
ZDI-CAN-19981 affects multiple NETGEAR routers that are vulnerable to improper remote server certificate validation.
Can ZDI-CAN-19981 be exploited without authentication?
Yes, ZDI-CAN-19981 can be exploited by network-adjacent attackers without requiring any authentication.
What can attackers achieve with ZDI-CAN-19981?
Attackers exploiting ZDI-CAN-19981 can compromise the integrity of downloaded information on affected NETGEAR routers.