cbcvebase.
CVE-2021-20166
published 2021-12-30

CVE-2021-20166: Netgear RAX43 version 1.0.3.96 contains a buffer overrun vulnerability. The URL parsing functionality in the cgi-bin endpoint of the router containers a buffer…

high8.8CVSS 3.1
AVAACLPRNUINSUCHIHAH
ITWEXPLOIT
Exploited in the wild
Netgear RAX43 version 1.0.3.96 contains a buffer overrun vulnerability. The URL parsing functionality in the cgi-bin endpoint of the router containers a buffer overrun issue that can redirection control flow of the applicaiton.

Affected

1 ranges
VendorProductVersion rangeFixed in
netgearrax43_firmware

CVSS provenance

nvdv3.18.8HIGHCVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
vulncheck8.8HIGH