CVE-2021-34947

NETGEAR R7800 net-cgi Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R7800 routers. Authentication is not required to exploit this vulnerability.

The specific flaw exists within the parsing of the soap_block_table file. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated data structure. An attacker can leverage this vulnerability to execute code in the context of root.
. Was ZDI-CAN-13055.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
8.8 HIGH
ADJACENT_NETWORK
LOW
NONE
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
zdiCNA
8.8 HIGH
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CISA-ADPADP
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 51%
VendorProductVersion
netgeard7800_firmware
𝑥
< 1.0.1.64
netgearex2700_firmware
𝑥
< 1.0.1.66
netgearex6100_firmware
𝑥
< 1.0.1.106
netgearex6150_firmware
𝑥
< 1.0.1.106
netgearex6200_firmware
𝑥
< 1.0.1.86
netgearex6250_firmware
𝑥
< 1.0.0.146
netgearex6400_firmware
𝑥
< 1.0.2.164
netgearex6400v2_firmware
𝑥
< 1.0.0.146
netgearex6410_firmware
𝑥
< 1.0.0.146
netgearex6420_firmware
𝑥
< 1.0.0.146
netgearex6500v1_firmware
𝑥
< 1.0.0.146
netgearex7300_firmware
𝑥
< 1.0.2.164
netgearex7300v2_firmware
𝑥
< 1.0.0.146
netgearex7320_firmware
𝑥
< 1.0.0.146
netgearex7700_firmware
𝑥
< 1.0.0.222
netgearex8000_firmware
𝑥
< 1.0.1.238
netgearlbr1020_firmware
𝑥
< 2.6.5.32
netgearlbr20_firmware
𝑥
< 2.6.5.32
netgearr6700ax_firmware
𝑥
< 1.0.5.108
netgearr7800_firmware
𝑥
< 1.0.2.84
netgearr8900_firmware
𝑥
< 1.0.5.36
netgearr9000_firmware
𝑥
< 1.0.5.36
netgearrax10_firmware
𝑥
< 1.0.5.108
netgearrax120_firmware
𝑥
< 1.2.2.24
netgearrax120v2_firmware
𝑥
< 1.2.2.24
netgearrax70_firmware
𝑥
< 1.0.5.108
netgearrax78_firmware
𝑥
< 1.0.5.108
netgearrbr10_firmware
𝑥
< 2.7.4.24
netgearrbr20_firmware
𝑥
< 2.7.4.24
netgearrbr40_firmware
𝑥
< 2.7.4.24
netgearrbr50_firmware
𝑥
< 2.7.4.24
netgearrbs10_firmware
𝑥
< 2.7.4.24
netgearrbs20_firmware
𝑥
< 2.7.4.24
netgearrbs40_firmware
𝑥
< 2.7.4.24
netgearrbs50_firmware
𝑥
< 2.7.4.24
netgearrbs50y_firmware
𝑥
< 2.7.4.12
netgearwn3000rpv2_firmware
𝑥
< 1.0.0.88
netgearwnr2000v5_firmware
𝑥
< 1.0.0.78
netgearxr450_firmware
𝑥
< 2.3.2.130
netgearxr500_firmware
𝑥
< 2.3.2.130
netgearxr700_firmware
𝑥
< 1.0.1.44
𝑥
= Vulnerable software versions