Netgear JWNR2000v2
cpe:2.3:h:netgear:jwnr2000v2:*:*:*:*:*:*:*, +1 more
- 1.0.0.11
A critical buffer overflow vulnerability has been identified in the Netgear JWNR2000v2 router, specifically in version 1.0.0.11. The issue arises in the function sub_41A914, where improper handling of the 'host' argument creates the potential for memory corruption. This vulnerability was disclosed to the vendor, but no response was received.
Exploitation of this vulnerability leads to a buffer overflow, which can commonly result in arbitrary code execution or causing a denial-of-service condition.
The vulnerability can be reproduced by sending a crafted request to the router's web interface that includes a 'host' argument. The manipulation of this argument triggers the buffer overflow in the affected function.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.