Netgear Cax80 Firmware vulnerabilities

4 known vulnerabilities affecting netgear/cax80_firmware.

Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH4

Vulnerabilities

Page 1 of 1
CVE-2022-27647HIGHCVSS 8.0fixed in 2.1.3.72023-03-29
CVE-2022-27647 [HIGH] CWE-78 CVE-2022-27647: This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installat This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700v3 1.0.4.120_10.0.91 routers. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within the handling of the name or email field provided
nvd
CVE-2022-27642HIGHCVSS 8.8fixed in 2.1.3.72023-03-29
CVE-2022-27642 [HIGH] CWE-863 CVE-2022-27642: This vulnerability allows network-adjacent attackers to bypass authentication on affected installati This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R6700v3 1.0.4.120_10.0.91 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the httpd service. The issue results from incorrect string matching logic when accessing protected pages. An
nvd
CVE-2022-24655HIGHCVSS 7.8v2.1.2.62022-03-18
CVE-2022-24655 [HIGH] CWE-787 CVE-2022-24655: A stack overflow vulnerability exists in the upnpd service in Netgear EX6100v1 201.0.2.28, CAX80 2.1 A stack overflow vulnerability exists in the upnpd service in Netgear EX6100v1 201.0.2.28, CAX80 2.1.2.6, and DC112A 1.0.0.62, which may lead to the execution of arbitrary code without authentication.
nvd
CVE-2021-34991HIGHCVSS 8.8fixed in 2.1.3.52021-11-15
CVE-2021-34991 [HIGH] CWE-121 CVE-2021-34991: This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installat This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6400v2 1.0.4.106_10.0.80 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the UPnP service, which listens on TCP port 5000 by default. When parsing the uuid request header, the proce
nvd