CVE-2023-27852

Severity
9.8CRITICAL
EPSS
0.5%
top 32.25%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 10

Description

NETGEAR Nighthawk WiFi6 Router prior to V1.0.10.94 contains a buffer overflow vulnerability in various CGI mechanisms that could allow an attacker to execute arbitrary code on the device.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages2 packages

CVEListV5netgear_nighthawk_wifi6_routerprior to V1.0.10.94
NVDnetgear/rax30_firmware< 1.0.10.94

🔴Vulnerability Details

2
GHSA
GHSA-fmrc-8f7q-wm23: NETGEAR Nighthawk WiFi6 Router prior to V12023-03-10
CVEList
CVE-2023-27852: NETGEAR Nighthawk WiFi6 Router prior to V12023-03-10
CVE-2023-27852 (CRITICAL CVSS 9.8) | NETGEAR Nighthawk WiFi6 Router prio | cvebase.io