nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2021-31802 CVE-2021-31802
HIGH
Netgear R7000 backup.cgi Heap Overflow RCE
Record summary
CVE-2021-31802 has a selected CVSS score of 8.8 (high); EIP currently links 1 catalogued exploit.
Description
NETGEAR R7000 1.0.11.116 devices have a heap-based Buffer Overflow that is exploitable from the local network without authentication. The vulnerability exists within the handling of an HTTP request. An attacker can leverage this to execute code as root. The problem is that a user-provided length value is trusted during a backup.cgi file upload. The attacker must add a \n before the Content-Length header.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
MetasploitNetgear R7000 backup.cgi Heap Overflow RCEMetasploit auxiliary PoCby Grant Willcox (tekwizz123) +2 moreNot analyzed1 file
References
3ssd-disclosure.com
https://ssd-disclosure.com/ssd-advisory-netgear-nighthawk-r7000-httpd-preauth-rce netgear.com
https://www.netgear.com/about/security