cbcvebase.
CVE-2023-36187
published 2023-09-01

CVE-2023-36187: Buffer Overflow vulnerability in NETGEAR R6400v2 before version 1.0.4.118, allows remote unauthenticated attackers to execute arbitrary code via crafted URL to…

critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
Buffer Overflow vulnerability in NETGEAR R6400v2 before version 1.0.4.118, allows remote unauthenticated attackers to execute arbitrary code via crafted URL to httpd.

Affected

15 ranges
VendorProductVersion rangeFixed in
netgearcbr40_firmware< 2.5.0.242.5.0.24
netgearlax20_firmware< 1.1.6.341.1.6.34
netgearmk62_firmware< 1.1.6.1221.1.6.122
netgearmr60_firmware< 1.1.6.1221.1.6.122
netgearms60_firmware< 1.1.6.1221.1.6.122
netgearr6400_firmware< 1.0.1.701.0.1.70
netgearr6400v2_firmware< 1.0.4.1181.0.4.118
netgearr6700v3_firmware< 1.0.4.1181.0.4.118
netgearr7000_firmware< 1.0.11.1301.0.11.130
netgearr7000p_firmware< 1.3.3.1481.3.3.148
netgearrax200_firmware< 1.0.4.1201.0.4.120
netgearrax75_firmware< 1.0.4.1201.0.4.120
netgearrax80_firmware< 1.0.4.1201.0.4.120
netgearrbw30_firmware< 2.6.2.62.6.2.6
netgearrs400_firmware< 1.5.1.861.5.1.86