cbcvebase.
CVE-2022-24655
published 2022-03-18

CVE-2022-24655: A stack overflow vulnerability exists in the upnpd service in Netgear EX6100v1 201.0.2.28, CAX80 2.1.2.6, and DC112A 1.0.0.62, which may lead to the execution…

high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
A stack overflow vulnerability exists in the upnpd service in Netgear EX6100v1 201.0.2.28, CAX80 2.1.2.6, and DC112A 1.0.0.62, which may lead to the execution of arbitrary code without authentication.

Affected

3 ranges
VendorProductVersion rangeFixed in
netgearcax80_firmware
netgeardc112a_firmware
netgearex6100_firmware