Vulnerability Description
Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects R6220 before V1.1.0.50, R7800 before V1.0.2.36, WNDR3400v3 before 1.0.1.14, and WNDR3700v5 before V1.1.0.48.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Netgear | R6220 Firmware | < 1.1.0.50 |
| Netgear | R6220 | - |
| Netgear | R7800 Firmware | < 1.0.2.36 |
| Netgear | R7800 | - |
| Netgear | Wndr3400 Firmware | < 1.0.1.14 |
| Netgear | Wndr3400 | v3 |
| Netgear | Wndr3700 Firmware | < 1.1.0.48 |
| Netgear | Wndr3700 | v5 |
Related Weaknesses (CWE)
References
- https://kb.netgear.com/000051516/Security-Advisory-for-Pre-Authentication-BufferVendor Advisory
- https://kb.netgear.com/000051516/Security-Advisory-for-Pre-Authentication-BufferVendor Advisory
FAQ
What is CVE-2017-18739?
CVE-2017-18739 is a vulnerability with a CVSS score of 8.8 (HIGH). Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects R6220 before V1.1.0.50, R7800 before V1.0.2.36, WNDR3400v3 before 1.0.1.14, and WNDR3700v5 before...
How severe is CVE-2017-18739?
CVE-2017-18739 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-18739?
Check the references section above for vendor advisories and patch information. Affected products include: Netgear R6220 Firmware, Netgear R6220, Netgear R7800 Firmware, Netgear R7800, Netgear Wndr3400 Firmware.