CVE-2018-21170

HIGH

NETGEAR R7800/EX2700/WN2000RPT/WN3000RP/WN3100RP Firmware - Unauthenticated Stack-based Buffer Overflow

Title source: llm
STIX 2.1

Description

Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects EX2700 before 1.0.1.28, R7800 before 1.0.2.40, WN2000RPTv3 before 1.0.1.20, WN3000RPv3 before 1.0.2.50, and WN3100RPv2 before 1.0.0.56.

Scores

CVSS v3 8.8
EPSS 0.0010
EPSS Percentile 26.4%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-787
Status published
Products (5)
netgear/ex2700_firmware < 1.0.1.28
netgear/r7800_firmware < 1.0.2.40
netgear/wn2000rpt_firmware < 1.0.1.20
netgear/wn3000rp_firmware < 1.0.2.50
netgear/wn3100rp_firmware < 1.0.0.56
Published Apr 27, 2020
Tracked Since Feb 18, 2026