VYPR
Unrated severityNVD Advisory· Published Apr 28, 2020· Updated Aug 5, 2024

CVE-2018-21213

CVE-2018-21213

Description

Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects D3600 before 1.0.0.67, D6000 before 1.0.0.67, D7800 before 1.0.1.30, R6100 before 1.0.1.20, R7500 before 1.0.0.118, R7500v2 before 1.0.3.24, R7800 before 1.0.2.40, R9000 before 1.0.2.52, WNDR3700v4 before 1.0.2.96, WNDR4300 before 1.0.2.98, WNDR4300v2 before 1.0.0.50, and WNDR4500v3 before 1.0.0.50.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Pre-authentication buffer overflow in multiple NETGEAR routers and gateways allows an unauthenticated, adjacent attacker to achieve code execution.

Vulnerability

A buffer overflow vulnerability exists in the pre-authentication code path of multiple NETGEAR routers and gateways [1]. The flaw affects the following models and firmware versions: D3600 before 1.0.0.67, D6000 before 1.0.0.67, D7800 before 1.0.1.30, R6100 before 1.0.1.20, R7500 before 1.0.0.118, R7500v2 before 1.0.3.24, R7800 before 1.0.2.40, R9000 before 1.0.2.52, WNDR3700v4 before 1.0.2.96, WNDR4300 before 1.0.2.98, WNDR4300v2 before 1.0.0.50, and WNDR4500v3 before 1.0.0.50 [1]. No authentication is required to reach the vulnerable code path.

Exploitation

An unauthenticated attacker with network adjacency (i.e., within Wi-Fi range or on the same local network) can send a specially crafted packet to the vulnerable device [1]. No prior authentication or user interaction is required. The advisory does not detail the exact protocol or input vector, but the vulnerability is triggered before authentication, meaning the device processes attacker-controlled data during the initial handshake or setup phase [1].

Impact

Successful exploitation of the buffer overflow leads to arbitrary code execution on the affected device [1]. The CVSS v3 vector indicates a High impact on confidentiality, integrity, and availability (C:H/I:H/A:H) [1]. An attacker could gain full control of the device, potentially enabling traffic interception, device manipulation, or use of the router as a pivot point into the internal network.

Mitigation

NETGEAR has released fixed firmware versions for each affected model as listed in the advisory [1]. Users should download and install the latest firmware from NETGEAR Support as soon as possible [1]. No workarounds are provided; the vendor states the vulnerability persists until the firmware is updated. The advisory does not mention inclusion on CISA's KEV list.

AI Insight generated on May 26, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

4

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.