CVE-2017-18770

Severity CVSS v4.0:
Pending analysis
Type:
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Publication date:
22/04/2020
Last modified:
23/04/2020

Description

Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects R7800 before 1.0.2.36, PLW1000v2 before 1.0.0.14, and PLW1010v2 before 1.0.0.14.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:netgear:r7800_firmware:*:*:*:*:*:*:*:* 1.0.2.36 (excluding)
cpe:2.3:h:netgear:r7800:-:*:*:*:*:*:*:*
cpe:2.3:o:netgear:plw1000_firmware:*:*:*:*:*:*:*:* 1.0.0.14 (excluding)
cpe:2.3:h:netgear:plw1000:v2:*:*:*:*:*:*:*
cpe:2.3:o:netgear:plw1010_firmware:*:*:*:*:*:*:*:* 1.0.0.14 (excluding)
cpe:2.3:h:netgear:plw1010:v2:*:*:*:*:*:*:*