8.8

CVE-2021-34947

NETGEAR R7800 net-cgi Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R7800 routers. Authentication is not required to exploit this vulnerability.

The specific flaw exists within the parsing of the soap_block_table file. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated data structure. An attacker can leverage this vulnerability to execute code in the context of root.
. Was ZDI-CAN-13055.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
This information is available to logged-in users.
Data is provided by the National Vulnerability Database (NVD)
NetgearD7800 Firmware Version < 1.0.1.64
   NetgearD7800 Version-
NetgearEx2700 Firmware Version < 1.0.1.66
   NetgearEx2700 Version-
NetgearEx6100 Firmware Version < 1.0.1.106
   NetgearEx6100 Versionv2
NetgearEx6150 Firmware Version < 1.0.1.106
   NetgearEx6150 Versionv2
NetgearEx6200 Firmware Version < 1.0.1.86
   NetgearEx6200 Versionv2
NetgearEx6250 Firmware Version < 1.0.0.146
   NetgearEx6250 Version-
NetgearEx6400 Firmware Version < 1.0.2.164
   NetgearEx6400 Version-
NetgearEx6400v2 Firmware Version < 1.0.0.146
   NetgearEx6400v2 Version-
NetgearEx6410 Firmware Version < 1.0.0.146
   NetgearEx6410 Version-
NetgearEx6420 Firmware Version < 1.0.0.146
   NetgearEx6420 Version-
NetgearEx6500v1 Firmware Version < 1.0.0.146
   NetgearEx6500v1 Version-
NetgearEx7300 Firmware Version < 1.0.2.164
   NetgearEx7300 Version-
NetgearEx7300v2 Firmware Version < 1.0.0.146
   NetgearEx7300v2 Version-
NetgearEx7320 Firmware Version < 1.0.0.146
   NetgearEx7320 Version-
NetgearEx7700 Firmware Version < 1.0.0.222
   NetgearEx7700 Version-
NetgearEx8000 Firmware Version < 1.0.1.238
   NetgearEx8000 Version-
NetgearLbr1020 Firmware Version < 2.6.5.32
   NetgearLbr1020 Version-
NetgearLbr20 Firmware Version < 2.6.5.32
   NetgearLbr20 Version-
NetgearR6700ax Firmware Version < 1.0.5.108
   NetgearR6700ax Version-
NetgearR7800 Firmware Version < 1.0.2.84
   NetgearR7800 Version-
NetgearR8900 Firmware Version < 1.0.5.36
   NetgearR8900 Version-
NetgearR9000 Firmware Version < 1.0.5.36
   NetgearR9000 Version-
NetgearRax10 Firmware Version < 1.0.5.108
   NetgearRax10 Version-
NetgearRax120 Firmware Version < 1.2.2.24
   NetgearRax120 Version-
NetgearRax120v2 Firmware Version < 1.2.2.24
   NetgearRax120v2 Version-
NetgearRax70 Firmware Version < 1.0.5.108
   NetgearRax70 Version-
NetgearRax78 Firmware Version < 1.0.5.108
   NetgearRax78 Version-
NetgearRbr10 Firmware Version < 2.7.4.24
   NetgearRbr10 Version-
NetgearRbr20 Firmware Version < 2.7.4.24
   NetgearRbr20 Version-
NetgearRbr40 Firmware Version < 2.7.4.24
   NetgearRbr40 Version-
NetgearRbr50 Firmware Version < 2.7.4.24
   NetgearRbr50 Version-
NetgearRbs10 Firmware Version < 2.7.4.24
   NetgearRbs10 Version-
NetgearRbs20 Firmware Version < 2.7.4.24
   NetgearRbs20 Version-
NetgearRbs40 Firmware Version < 2.7.4.24
   NetgearRbs40 Version-
NetgearRbs50 Firmware Version < 2.7.4.24
   NetgearRbs50 Version-
NetgearRbs50y Firmware Version < 2.7.4.12
   NetgearRbs50y Version-
NetgearWn3000rpv2 Firmware Version < 1.0.0.88
   NetgearWn3000rpv2 Version-
NetgearWnr2000v5 Firmware Version < 1.0.0.78
   NetgearWnr2000v5 Version-
NetgearXr450 Firmware Version < 2.3.2.130
   NetgearXr450 Version-
NetgearXr500 Firmware Version < 2.3.2.130
   NetgearXr500 Version-
NetgearXr700 Firmware Version < 1.0.1.44
   NetgearXr700 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.39% 0.592
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
zdi-disclosures@trendmicro.com 8.8 2.8 5.9
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE-787 Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.