Buffer Overflow Vulnerability in NETGEAR RAX Series Routers
CVE-2021-38526

4.3MEDIUM

Key Information:

Vendor
Netgear
Vendor
CVE Published:
11 August 2021

Summary

Certain NETGEAR RAX series routers are prone to a buffer overflow vulnerability that can be exploited by an unauthenticated attacker. This flaw allows for potential unauthorized access and could lead to the execution of arbitrary code on affected devices, notably in models RAX35, RAX38, and RAX40 prior to version 1.0.3.94. Users are advised to apply the necessary firmware updates to mitigate this risk.

References

CVSS V3.1

Score:
4.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.