ZeroHour

CVE-2023-39550

PoC
CVSS 3.1
8.8 high
EPSS
1%p63
Published
()
Modified
Description

Netgear JWNR2000v2 v1.0.0.11, XWN5001 v0.4.1.1, and XAVN2001v2 v0.4.0.7 were discovered to contain multiple buffer overflows via the http_passwd and http_username parameters in the check_auth function.

Vendors
netgear
Products
jwnr2000v2 firmware, xwn5001 firmware, xavn2001v2 firmware
Weakness
CWE-120
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.