Netgear Xavn2001V2 Firmware vulnerabilities
3 known vulnerabilities affecting netgear/xavn2001v2_firmware.
Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH3
Vulnerabilities
Page 1 of 1
CVE-2023-38922HIGHCVSS 8.8v0.4.0.72023-08-07
CVE-2023-38922 [HIGH] CWE-120 CVE-2023-38922: Netgear JWNR2000v2 v1.0.0.11, XWN5001 v0.4.1.1, and XAVN2001v2 v0.4.0.7 were discovered to contain m
Netgear JWNR2000v2 v1.0.0.11, XWN5001 v0.4.1.1, and XAVN2001v2 v0.4.0.7 were discovered to contain multiple buffer overflows via the http_passwd and http_username parameters in the update_auth function.
nvd
CVE-2023-39550HIGHCVSS 8.8v0.4.0.72023-08-07
CVE-2023-39550 [HIGH] CWE-120 CVE-2023-39550: Netgear JWNR2000v2 v1.0.0.11, XWN5001 v0.4.1.1, and XAVN2001v2 v0.4.0.7 were discovered to contain m
Netgear JWNR2000v2 v1.0.0.11, XWN5001 v0.4.1.1, and XAVN2001v2 v0.4.0.7 were discovered to contain multiple buffer overflows via the http_passwd and http_username parameters in the check_auth function.
nvd
CVE-2023-23110HIGHCVSS 7.4≤ 0.4.0.72023-02-02
CVE-2023-23110 [HIGH] CWE-494 CVE-2023-23110: An exploitable firmware modification vulnerability was discovered in certain Netgear products. The d
An exploitable firmware modification vulnerability was discovered in certain Netgear products. The data integrity of the uploaded firmware image is ensured with a fixed checksum number. Therefore, an attacker can conduct a MITM attack to modify the user-uploaded firmware image and bypass the checksum verification. This affects WNR612v2 Wireless Router
nvd