Product:

Wnr2000v3_firmware

(Netgear)
Repositories

Unknown:

This might be proprietary software.

#Vulnerabilities 2
Date Id Summary Products Score Patch Annotated
2017-01-30 CVE-2016-10174 The NETGEAR WNR2000v5 router contains a buffer overflow in the hidden_lang_avi parameter when invoking the URL /apply.cgi?/lang_check.html. This buffer overflow can be exploited by an unauthenticated attacker to achieve remote code execution. D6100_firmware, D7000_firmware, D7800_firmware, Jnr1010v2_firmware, Jnr3300_firmware, Jwnr2010v5_firmware, R2000_firmware, R6100_firmware, R6220_firmware, R7500_firmware, R7500v2_firmware, Wndr3700v4_firmware, Wndr3800_firmware, Wndr4300_firmware, Wndr4300v2_firmware, Wndr4500v3_firmware, Wndr4700_firmware, Wnr1000v2_firmware, Wnr1000v4_firmware, Wnr2000v3_firmware, Wnr2000v4_firmware, Wnr2000v5_firmware, Wnr2020_firmware, Wnr2050_firmware, Wnr2200_firmware, Wnr2500_firmware, Wnr614_firmware, Wnr618_firmware 9.8
2017-05-26 CVE-2017-6862 NETGEAR WNR2000v3 devices before 1.1.2.14, WNR2000v4 devices before 1.0.0.66, and WNR2000v5 devices before 1.0.0.42 allow authentication bypass and remote code execution via a buffer overflow that uses a parameter in the administration webapp. The NETGEAR ID is PSV-2016-0261. Wnr2000v3_firmware, Wnr2000v4_firmware, Wnr2000v5_firmware 9.8