ZDI-CAN-20009: ZDI-23-1163: NETGEAR RAX30 Telnet CLI passwd Stack-based Buffer Overflow Remote Code Execution Vulnerability
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR RAX30 routers. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-20009?
The severity of ZDI-CAN-20009 is considered high due to its potential for arbitrary code execution.
How do I fix ZDI-CAN-20009?
To fix ZDI-CAN-20009, ensure your NETGEAR RAX30 router firmware is updated to the latest version provided by the vendor.
Who is affected by ZDI-CAN-20009?
ZDI-CAN-20009 affects installations of NETGEAR RAX30 routers.
How can ZDI-CAN-20009 be exploited?
ZDI-CAN-20009 can be exploited by network-adjacent attackers who are able to bypass the existing authentication mechanism.
What are the consequences of ZDI-CAN-20009?
The consequences of ZDI-CAN-20009 include potential unauthorized access and execution of arbitrary code on the affected router.