CVE-2016-10174
30.01.2017, 04:59
The NETGEAR WNR2000v5 router contains a buffer overflow in the hidden_lang_avi parameter when invoking the URL /apply.cgi?/lang_check.html. This buffer overflow can be exploited by an unauthenticated attacker to achieve remote code execution.
Vendor | Product | Version |
---|---|---|
netgear | d6100_firmware | - |
netgear | d7000_firmware | - |
netgear | d7800_firmware | - |
netgear | jnr1010v2_firmware | - |
netgear | jnr3300_firmware | - |
netgear | jwnr2010v5_firmware | - |
netgear | r2000_firmware | - |
netgear | r6100_firmware | - |
netgear | r6220_firmware | - |
netgear | r7500_firmware | - |
netgear | r7500v2_firmware | - |
netgear | wndr3700v4_firmware | - |
netgear | wndr3800_firmware | - |
netgear | wndr4300_firmware | - |
netgear | wndr4300v2_firmware | - |
netgear | wndr4500v3_firmware | - |
netgear | wndr4700_firmware | - |
netgear | wnr1000v2_firmware | - |
netgear | wnr1000v4_firmware | - |
netgear | wnr2000v3_firmware | - |
netgear | wnr2000v4_firmware | - |
netgear | wnr2000v5_firmware | - |
netgear | wnr2020_firmware | - |
netgear | wnr2050_firmware | - |
netgear | wnr2200_firmware | - |
netgear | wnr2500_firmware | - |
netgear | wnr614_firmware | - |
netgear | wnr618_firmware | - |
𝑥
= Vulnerable software versions
References