PT-2023-3405 · NetGear · Netgear R6250

Published

2023-06-20

·

Updated

2024-12-09

·

CVE-2023-34563

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Netgear R6250 Firmware Version 1.0.4.48
Description The issue is related to a buffer overflow vulnerability in the Netgear R6250 router's firmware. This vulnerability is associated with uncontrolled copying of user input, which can lead to a buffer overflow. An attacker, acting remotely, can exploit this vulnerability to potentially cause a buffer overflow after authentication.
Recommendations For Netgear R6250 Firmware Version 1.0.4.48, consider applying a patch or update to fix the buffer overflow issue, if available. As a temporary workaround, restrict access to the router's authentication interface to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2023-03580
CVE-2023-34563

Affected Products

Netgear R6250