CVE-2023-28338
15.03.2023, 23:15
Any request send to a Netgear Nighthawk Wifi6 Router (RAX30)'s web service containing a Content-Type of multipartboundary= will result in the request body being written to /tmp/mulipartFile on the device itself. A sufficiently large file will cause device resources to be exhausted, resulting in the device becoming unusable until it is rebooted.Enginsight
Vendor | Product | Version |
---|---|---|
netgear | rax30_firmware | * |
𝑥
= Vulnerable software versions