CVE-2022-47208
Summary
| CVE | CVE-2022-47208 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-12-16 20:15:00 UTC |
| Updated | 2023-08-08 14:21:00 UTC |
| Description | The “puhttpsniff” service, which runs by default, is susceptible to command injection due to improperly sanitized user input. An unauthenticated attacker on the same network segment as the router can execute arbitrary commands on the device without authentication. |
Risk And Classification
Problem Types: CWE-78
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Netgear | Nighthawk Ax11000 | - | All | All | All |
| Operating System | Netgear | Nighthawk Ax11000 Firmware | All | All | All | All |
| Hardware | Netgear | Nighthawk Ax1800 | - | All | All | All |
| Operating System | Netgear | Nighthawk Ax1800 Firmware | All | All | All | All |
| Hardware | Netgear | Nighthawk Ax2400 | - | All | All | All |
| Operating System | Netgear | Nighthawk Ax2400 Firmware | All | All | All | All |
| Hardware | Netgear | Nighthawk Ax3000 | - | All | All | All |
| Operating System | Netgear | Nighthawk Ax3000 Firmware | All | All | All | All |
| Hardware | Netgear | Nighthawk Ax5400 | - | All | All | All |
| Operating System | Netgear | Nighthawk Ax5400 Firmware | All | All | All | All |
| Hardware | Netgear | Nighthawk Ax6000 | - | All | All | All |
| Operating System | Netgear | Nighthawk Ax6000 Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| NETGEAR Nighthawk WiFi6 Router Multiple Vulnerabilities - Research Advisory | Tenable® | MISC | www.tenable.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.