VYPR

upnpd

by Netgear

CVEs (3)

  • CVE-2019-14363CriJul 28, 2019
    risk 0.64cvss 9.8epss 0.03

    A stack-based buffer overflow in the upnpd binary running on NETGEAR WNDR3400v3 routers with firmware version 1.0.1.18_1.0.63 allows an attacker to remotely execute arbitrary code via a crafted UPnP SSDP packet.

  • CVE-2020-28373HigNov 9, 2020
    risk 0.57cvss 8.8epss 0.01

    upnpd on certain NETGEAR devices allows remote (LAN) attackers to execute arbitrary code via a stack-based buffer overflow. This affects R6400v2 V1.0.4.102_10.0.75, R6400 V1.0.1.62_1.0.41, R7000P V1.3.2.126_10.1.66, XR300 V1.0.3.50_10.3.36, R8000 V1.0.4.62, R8300 V1.0.2.136,…

  • CVE-2022-24655HigMar 18, 2022
    risk 0.51cvss 7.8epss 0.01

    A stack overflow vulnerability exists in the upnpd service in Netgear EX6100v1 201.0.2.28, CAX80 2.1.2.6, and DC112A 1.0.0.62, which may lead to the execution of arbitrary code without authentication.