Netgear

Wnr2000v5 Firmware

15 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.31%
  • Veröffentlicht 09.10.2020 07:15:17
  • Zuletzt bearbeitet 21.11.2024 05:20:28

Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects D6100 before 1.0.0.63, R7800 before 1.0.2.60, R8900 before 1.0.4.26, R9000 before 1.0.4.26, RBK20 before 2.3.0.28, RBR20 before 2.3.0.28, RBS...

Warnung
  • EPSS 55.66%
  • Veröffentlicht 26.05.2017 20:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

NETGEAR WNR2000v3 devices before 1.1.2.14, WNR2000v4 devices before 1.0.0.66, and WNR2000v5 devices before 1.0.0.42 allow authentication bypass and remote code execution via a buffer overflow that uses a parameter in the administration webapp. The NE...

Warnung Exploit
  • EPSS 91.84%
  • Veröffentlicht 30.01.2017 04:59:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The NETGEAR WNR2000v5 router contains a buffer overflow in the hidden_lang_avi parameter when invoking the URL /apply.cgi?/lang_check.html. This buffer overflow can be exploited by an unauthenticated attacker to achieve remote code execution.

Exploit
  • EPSS 81.61%
  • Veröffentlicht 30.01.2017 04:59:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The NETGEAR WNR2000v5 router leaks its serial number when performing a request to the /BRS_netgear_success.html URI. This serial number allows a user to obtain the administrator username and password, when used in combination with the CVE-2016-10176 ...

Exploit
  • EPSS 86.62%
  • Veröffentlicht 30.01.2017 04:59:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The NETGEAR WNR2000v5 router allows an administrator to perform sensitive actions by invoking the apply.cgi URL on the web server of the device. This special URL is handled by the embedded web server (uhttpd) and processed accordingly. The web server...