Vulnerability Database

296,147

Total vulnerabilities in the database

CVE-2021-34947

NETGEAR R7800 net-cgi Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R7800 routers. Authentication is not required to exploit this vulnerability.

The specific flaw exists within the parsing of the soap_block_table file. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated data structure. An attacker can leverage this vulnerability to execute code in the context of root. . Was ZDI-CAN-13055.

No technical information available.

No CWE or OWASP classifications available.

Software From Fixed in
netgear / d7800_firmware - 1.0.1.64
netgear / ex2700_firmware - 1.0.1.66
netgear / ex6100_firmware - 1.0.1.106
netgear / ex6150_firmware - 1.0.1.106
netgear / ex6200_firmware - 1.0.1.86
netgear / ex6250_firmware - 1.0.0.146
netgear / ex6400_firmware - 1.0.2.164
netgear / ex6400v2_firmware - 1.0.0.146
netgear / ex6410_firmware - 1.0.0.146
netgear / ex6420_firmware - 1.0.0.146
netgear / ex6500v1_firmware - 1.0.0.146
netgear / ex7300_firmware - 1.0.2.164
netgear / ex7300v2_firmware - 1.0.0.146
netgear / ex7320_firmware - 1.0.0.146
netgear / ex7700_firmware - 1.0.0.222
netgear / ex8000_firmware - 1.0.1.238
netgear / lbr1020_firmware - 2.6.5.32
netgear / lbr20_firmware - 2.6.5.32
netgear / r6700ax_firmware - 1.0.5.108
netgear / r7800_firmware - 1.0.2.84
netgear / r8900_firmware - 1.0.5.36
netgear / r9000_firmware - 1.0.5.36
netgear / rax10_firmware - 1.0.5.108
netgear / rax120_firmware - 1.2.2.24
netgear / rax120v2_firmware - 1.2.2.24
netgear / rax70_firmware - 1.0.5.108
netgear / rax78_firmware - 1.0.5.108
netgear / rbr10_firmware - 2.7.4.24
netgear / rbr20_firmware - 2.7.4.24
netgear / rbr40_firmware - 2.7.4.24
netgear / rbr50_firmware - 2.7.4.24
netgear / rbs10_firmware - 2.7.4.24
netgear / rbs20_firmware - 2.7.4.24
netgear / rbs40_firmware - 2.7.4.24
netgear / rbs50_firmware - 2.7.4.24
netgear / rbs50y_firmware - 2.7.4.12
netgear / wn3000rpv2_firmware - 1.0.0.88
netgear / wnr2000v5_firmware - 1.0.0.78
netgear / xr450_firmware - 2.3.2.130
netgear / xr500_firmware - 2.3.2.130
netgear / xr700_firmware - 1.0.1.44