2023-04-24 12:24:31 +02:00
{
"id" : "CVE-2021-27239" ,
"sourceIdentifier" : "zdi-disclosures@trendmicro.com" ,
"published" : "2021-03-29T21:15:12.377" ,
2024-12-08 03:06:42 +00:00
"lastModified" : "2024-11-21T05:57:39.813" ,
"vulnStatus" : "Modified" ,
2024-07-14 02:06:08 +00:00
"cveTags" : [ ] ,
2023-04-24 12:24:31 +02:00
"descriptions" : [
{
"lang" : "en" ,
"value" : "This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6400 and R6700 firmware version 1.0.4.98 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the upnpd service, which listens on UDP port 1900 by default. A crafted MX header field in an SSDP message can trigger an overflow of a fixed-length stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-11851."
} ,
{
"lang" : "es" ,
"value" : "Esta vulnerabilidad permite a atacantes adyacentes a la red ejecutar c\u00f3digo arbitrario en las instalaciones afectadas de los enrutadores NETGEAR R6400 y R6700 versi\u00f3n de firmware 1.0.4.98. No es requerida una autenticaci\u00f3n para explotar esta vulnerabilidad. El fallo espec\u00edfico se presenta dentro del servicio upnpd, que escucha en el puerto UDP 1900 por defecto. Un campo de encabezado MX dise\u00f1ado en un mensaje SSDP puede desencadenar un desbordamiento de un b\u00fafer en la regi\u00f3n stack de la memoria de longitud corregida. Un atacante puede aprovechar esta vulnerabilidad para ejecutar c\u00f3digo en el contexto de root. Era ZDI-CAN-11851"
}
] ,
"metrics" : {
"cvssMetricV31" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"cvssData" : {
"version" : "3.1" ,
"vectorString" : "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" ,
2024-12-08 03:06:42 +00:00
"baseScore" : 8.8 ,
"baseSeverity" : "HIGH" ,
2023-04-24 12:24:31 +02:00
"attackVector" : "ADJACENT_NETWORK" ,
"attackComplexity" : "LOW" ,
"privilegesRequired" : "NONE" ,
"userInteraction" : "NONE" ,
"scope" : "UNCHANGED" ,
"confidentialityImpact" : "HIGH" ,
"integrityImpact" : "HIGH" ,
2024-12-08 03:06:42 +00:00
"availabilityImpact" : "HIGH"
2023-04-24 12:24:31 +02:00
} ,
"exploitabilityScore" : 2.8 ,
"impactScore" : 5.9
}
] ,
"cvssMetricV30" : [
{
"source" : "zdi-disclosures@trendmicro.com" ,
"type" : "Secondary" ,
"cvssData" : {
"version" : "3.0" ,
"vectorString" : "CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" ,
2024-12-08 03:06:42 +00:00
"baseScore" : 8.8 ,
"baseSeverity" : "HIGH" ,
2023-04-24 12:24:31 +02:00
"attackVector" : "ADJACENT_NETWORK" ,
"attackComplexity" : "LOW" ,
"privilegesRequired" : "NONE" ,
"userInteraction" : "NONE" ,
"scope" : "UNCHANGED" ,
"confidentialityImpact" : "HIGH" ,
"integrityImpact" : "HIGH" ,
2024-12-08 03:06:42 +00:00
"availabilityImpact" : "HIGH"
2023-04-24 12:24:31 +02:00
} ,
"exploitabilityScore" : 2.8 ,
"impactScore" : 5.9
}
] ,
"cvssMetricV2" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"cvssData" : {
"version" : "2.0" ,
"vectorString" : "AV:A/AC:L/Au:N/C:C/I:C/A:C" ,
2024-12-08 03:06:42 +00:00
"baseScore" : 8.3 ,
2023-04-24 12:24:31 +02:00
"accessVector" : "ADJACENT_NETWORK" ,
"accessComplexity" : "LOW" ,
"authentication" : "NONE" ,
"confidentialityImpact" : "COMPLETE" ,
"integrityImpact" : "COMPLETE" ,
2024-12-08 03:06:42 +00:00
"availabilityImpact" : "COMPLETE"
2023-04-24 12:24:31 +02:00
} ,
"baseSeverity" : "HIGH" ,
"exploitabilityScore" : 6.5 ,
"impactScore" : 10.0 ,
"acInsufInfo" : false ,
"obtainAllPrivilege" : false ,
"obtainUserPrivilege" : false ,
"obtainOtherPrivilege" : false ,
"userInteractionRequired" : false
}
]
} ,
"weaknesses" : [
{
"source" : "zdi-disclosures@trendmicro.com" ,
2024-12-15 03:03:56 +00:00
"type" : "Primary" ,
2023-04-24 12:24:31 +02:00
"description" : [
{
"lang" : "en" ,
"value" : "CWE-121"
}
]
}
] ,
"configurations" : [
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:d6220_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.0.0.68" ,
"matchCriteriaId" : "ADF65DC4-51D5-4C38-B28D-7EA93B1734A3"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:d6220:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "F3EEA190-2E9C-4586-BF81-B115532FBA23"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:d6400_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.0.0.102" ,
"matchCriteriaId" : "888A8E0F-93DD-436D-B00C-F469C3BD6E5B"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:d6400:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "7D30939B-86E3-4C78-9B05-686B4994C8B9"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:d7000_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.0.0.66" ,
"matchCriteriaId" : "08668CFE-EE8B-4EE9-8B9D-FFCB45EE27D2"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:d7000:v2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "D8780623-F362-4FA5-8B33-37E9CB3FEE12"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:d8500_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.0.3.60" ,
"matchCriteriaId" : "160F53B0-8430-4D85-8ABC-0A64B27DDFBD"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:d8500:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "814A0114-9A1D-4EA0-9AF4-6968514E4F01"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:dc112a_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.0.0.54" ,
"matchCriteriaId" : "9A59578F-1A3F-428B-A995-572C8E93C15C"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:dc112a:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "F87FFC46-137D-45B8-B437-F15565FB33D0"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:ex7000_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.0.1.94" ,
"matchCriteriaId" : "5E273CF7-2DB6-4641-8753-810949D631B0"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:ex7000:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "9F45B620-60B8-40F3-A055-181ADD71EFFF"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:ex7500_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.0.0.72" ,
"matchCriteriaId" : "3A9F4EEE-E2D2-42B2-BC5C-844055677C1C"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:ex7500:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "44336289-F9DA-4779-8C1A-0221E29E2E2F"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:r6250_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.0.4.48" ,
"matchCriteriaId" : "049629DD-9E4F-4F47-98B0-C9FD457B74A0"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:r6250:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "321BE843-52C4-4638-A321-439CA7B3A6F2"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:r6300_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.0.4.50" ,
"matchCriteriaId" : "685E2CA4-AA89-4574-8DB1-7C06D9F0FF2D"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:r6300:v2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "10938043-F7DF-42C3-8C16-F92CAF8E5576"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:r6400_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.0.1.68" ,
"matchCriteriaId" : "930E739E-EFDC-49AB-9155-A71C2B25FCD6"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:r6400:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "3E4CDF6B-3829-44D0-9675-71D7BE83CAA2"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:r6400_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.0.4.102" ,
"matchCriteriaId" : "E02F15FF-76B1-43DD-85E0-A34E764E638D"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:r6400:v2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "52AE9AD2-BC8D-477D-A3D3-891AE52FA5F3"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:r6700_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.0.4.102" ,
"matchCriteriaId" : "357EDE1B-75BA-4515-B0E9-2B70EF993244"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:r6700:v3:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "5A09A9E8-8C77-4EDB-9483-B3C540EF083A"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:r6900p_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.3.2.132" ,
"matchCriteriaId" : "839A9EBE-5F14-4695-8040-7D5607F8E248"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:r6900p:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C41908FF-AE64-4949-80E3-BEE061B2DA8A"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:r7000_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.0.11.116" ,
"matchCriteriaId" : "D9F1DAD0-F8B8-48D5-B571-C55636B274C3"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:r7000:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C9F86FF6-AB32-4E51-856A-DDE790C0A9A6"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:r7000p_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.3.2.132" ,
"matchCriteriaId" : "EAF3EA40-79FB-4D2C-A8AF-A04820745C4D"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:r7000p:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "DFE55F4D-E98B-46D3-B870-041141934CD1"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:r7100lg_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.0.0.64" ,
"matchCriteriaId" : "1AC36017-5BCF-4CF6-91D0-278279943847"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:r7100lg:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "366FA778-3C2A-42AF-9141-DAD7043B406C"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:r7850_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.0.5.68" ,
"matchCriteriaId" : "EF7A1DF8-E9A0-4312-AC37-DEB46E37EE50"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:r7850:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "DAF94D73-B6D0-4334-9A41-83AA92B7C6DF"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:r7900_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.0.4.38" ,
"matchCriteriaId" : "96390A31-03B8-477B-8710-F797CB44E741"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:r7900:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C484840F-AF30-4B5C-821A-4DB9BE407BDB"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:r7900p_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.4.1.68" ,
"matchCriteriaId" : "DAB3F350-9094-4B64-8ED9-517069EB56F4"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:r7900p:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "F3D6A70D-66AF-4064-9F1B-4358D4B1F016"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:r7960p_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.4.1.68" ,
"matchCriteriaId" : "0ECEE38A-B0BB-43F8-AB4D-26572B789BFB"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:r7960p:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "091CEDB5-0069-4253-86D8-B9FE17CB9F24"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:r8000_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.0.4.68" ,
"matchCriteriaId" : "D10E41DC-982F-444A-9A4D-82EC2BA64199"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:r8000:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "5B39F095-8FE8-43FD-A866-7B613B495984"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:r8000p_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.4.1.68" ,
"matchCriteriaId" : "61DF6302-36B7-49CF-8F2C-4C2247112EB9"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:r8000p:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "F7EF872D-2537-4FEB-8799-499FC9D44339"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:r8300_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.0.2.144" ,
"matchCriteriaId" : "60634A15-B02A-4C33-A1A4-F6340CFD6B8B"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:r8300:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "7A9B77E7-7439-48C6-989F-5E22CB4D3044"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:r8500_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.0.2.144" ,
"matchCriteriaId" : "F8E565CF-8408-4502-97BD-01CEF15D0744"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:r8500:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "63500DE4-BDBD-4F86-AB99-7DB084D0B912"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:rax200_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.0.2.88" ,
"matchCriteriaId" : "609B0EC8-FCD3-4522-A06A-7CB521586A22"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:rax200:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "58EB0F2F-FB5C-47D9-9AE6-087AE517B3F9"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:rax75_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.0.3.102" ,
"matchCriteriaId" : "ADDF0077-E02C-4DDA-A84E-DF3A0237FC66"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:rax75:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "1BAA74D7-36A1-4494-96A2-BD0D2D6BF22F"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:rax80_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.0.3.102" ,
"matchCriteriaId" : "81DF924F-FDA4-4588-B8A3-6F18ABBD4976"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:rax80:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "06B5A85C-3588-4263-B9AD-4E56D3F6CB16"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:rbr750_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "3.2.17.12" ,
"matchCriteriaId" : "B6AE1767-9D9A-4E9E-B088-6727FACFDE5C"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:rbr750:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C13F5C69-FA9B-472A-9036-0C2967BDCDE9"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:rbr850_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "3.2.17.12" ,
"matchCriteriaId" : "01E0EF50-145F-407A-8915-4EFFCD833505"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:rbr850:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "D92E4C8E-222A-476C-8273-F7171FC61F0B"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:rbs40v_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "2.6.2.4" ,
"matchCriteriaId" : "1CA086E1-DB23-4130-B746-D56F5A188C3B"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:rbs40v:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "F0D05F28-47A2-46AE-992E-132B34F6194B"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:rbs750_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "3.2.17.12" ,
"matchCriteriaId" : "F614A1AB-F0C0-45D7-8D91-ECA3C1AA9165"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:rbs750:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B529194C-C440-4BC3-850F-0613FC548F86"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:rbs850_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "3.2.17.12" ,
"matchCriteriaId" : "0DC5A075-0619-409C-B057-41015B8C54B3"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:rbs850:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "221CA950-E984-44CD-9E1B-3AADE3CEBE52"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:rs400_firmware:*:*:*:*:*:*:*:*" ,
"versionEndIncluding" : "1.5.0.68" ,
"matchCriteriaId" : "8509E165-B497-4483-95E6-7BEB2AB40946"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:rs400:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "2700644E-0940-4D05-B3CA-904D91739E58"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:wndr3400_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.0.1.38" ,
"matchCriteriaId" : "065AE552-7268-45C5-92CA-B56602C9313D"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:wndr3400:v3:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "1992E44C-122C-41BC-8FDC-5F9EBEE1FB7C"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:wnr3500l_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.2.0.66" ,
"matchCriteriaId" : "2FCE2862-B111-45A9-85D9-8BABEFE4F856"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:wnr3500l:v2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C8DE4BFA-41DE-4748-ACC7-14362333A059"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:netgear:xr300_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "1.0.3.56" ,
"matchCriteriaId" : "4AF96D62-1D28-4FE5-AFC3-FB93A1BB4D45"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:netgear:xr300:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "5590CF28-B88A-4755-904B-1BC1778FBEDD"
}
]
}
]
}
] ,
"references" : [
{
"url" : "https://kb.netgear.com/000062820/Security-Advisory-for-Stack-based-Buffer-Overflow-Remote-Code-Execution-Vulnerability-on-Some-Routers-PSV-2020-0432" ,
"source" : "zdi-disclosures@trendmicro.com" ,
"tags" : [
"Vendor Advisory"
]
} ,
{
"url" : "https://www.zerodayinitiative.com/advisories/ZDI-21-206/" ,
"source" : "zdi-disclosures@trendmicro.com" ,
"tags" : [
"Third Party Advisory" ,
"VDB Entry"
]
2024-12-08 03:06:42 +00:00
} ,
{
"url" : "https://kb.netgear.com/000062820/Security-Advisory-for-Stack-based-Buffer-Overflow-Remote-Code-Execution-Vulnerability-on-Some-Routers-PSV-2020-0432" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Vendor Advisory"
]
} ,
{
"url" : "https://www.zerodayinitiative.com/advisories/ZDI-21-206/" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Third Party Advisory" ,
"VDB Entry"
]
2023-04-24 12:24:31 +02:00
}
]
}