Record summary

CVE-2021-31802 has a selected CVSS score of 8.8 (high); EIP currently links 1 catalogued exploit.

Description

NETGEAR R7000 1.0.11.116 devices have a heap-based Buffer Overflow that is exploitable from the local network without authentication. The vulnerability exists within the handling of an HTTP request. An attacker can leverage this to execute code as root. The problem is that a user-provided length value is trusted during a backup.cgi file upload. The attacker must add a \n before the Content-Length header.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

MetasploitNetgear R7000 backup.cgi Heap Overflow RCEMetasploit auxiliary PoCby Grant Willcox (tekwizz123) +2 moreNot analyzed1 file

Ruby

Metasploit

PoC details

References

3