CVE-2022-48176
published 2023-01-31CVE-2022-48176: Netgear routers R7000P before v1.3.3.154, R6900P before v1.3.3.154, R7960P before v1.4.4.94, and R8000P before v1.4.4.94 were discovered to contain a…
PriorityP342high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.45%
36.2th percentile
Netgear routers R7000P before v1.3.3.154, R6900P before v1.3.3.154, R7960P before v1.4.4.94, and R8000P before v1.4.4.94 were discovered to contain a pre-authentication stack overflow.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| netgear | mr60_firmware | < 1.1.7.132 | 1.1.7.132 |
| netgear | ms60_firmware | < 1.1.7.132 | 1.1.7.132 |
| netgear | r6900p_firmware | < 1.3.3.154 | 1.3.3.154 |
| netgear | r7000p_firmware | < 1.3.3.154 | 1.3.3.154 |
| netgear | r7960p_firmware | < 1.4.4.94 | 1.4.4.94 |
| netgear | r8000p_firmware | < 1.4.4.94 | 1.4.4.94 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://hdwsec.fr/blog/20221109-netgear/https://kb.netgear.com/000065242/Security-Advisory-for-Pre-authentication-Stack-Overflow-on-some-Routers-and-Nighthawk-WiFi-Mesh-Systems-PSV-2022-0146https://www.netgear.com/about/security/https://hdwsec.fr/blog/20221109-netgear/https://kb.netgear.com/000065242/Security-Advisory-for-Pre-authentication-Stack-Overflow-on-some-Routers-and-Nighthawk-WiFi-Mesh-Systems-PSV-2022-0146https://www.netgear.com/about/security/
2023-01-31
Published