CVE-2021-40847

Description from NVD

The update process of the Circle Parental Control Service on various NETGEAR routers allows remote attackers to achieve remote code execution as root via a MitM attack. While the parental controls themselves are not enabled by default on the routers, the Circle update daemon, circled, is enabled by default. This daemon connects to Circle and NETGEAR to obtain version information and updates to the circled daemon and its filtering database. However, database updates from NETGEAR are unsigned and downloaded via cleartext HTTP. As such, an attacker with the ability to perform a MitM attack on the device can respond to circled update requests with a crafted, compressed database file, the extraction of which gives the attacker the ability to overwrite executable files with attacker-controlled code. This affects R6400v2 1.0.4.106, R6700 1.0.2.16, R6700v3 1.0.4.106, R6900 1.0.2.16, R6900P 1.3.2.134, R7000 1.0.11.123, R7000P 1.3.2.134, R7850 1.0.5.68, R7900 1.0.4.38, R8000 1.0.4.68, and RS400 1.5.0.68.

Information Acquisition Date:2021-09-30T16:40Z
CVSS 2.0: 0.0 None CVSS 3.x: 0.0 None

NVD References

 https://blog.grimm-co.com/2021/09/mama-always-told-me-not-to-trust.html
     source:MISC
     tags:
 https://kb.netgear.com/000064039/Security-Advisory-for-Remote-Code-Execution-on-Some-Routers-PSV-2021-0204
     source:MISC
     tags:

Refer to Information on External Sites

CVE InfomationExploits or more Infomation
mitreEXPLOIT DATABASE
NVD0day.today
vulmon.comgithub
CVE DetailsTwitter
JVN ENG JPN
Reconshell

Software Tag: Java(1 tweets) Linux(1 tweets)



List of frequently cited URLs

URLNum of Times Referred to
https://alerts.vulmon.com/?utm_source=twitter&utm_medium=so...239
https://securityaffairs.co/wordpress/122486/hacking/cve-202...148
https://isecurityfeed.wordpress.com/2021/09/23/cve-2021-408...24
https://twitter.com/RigneySec/status/14405207416826961953
https://kb.netgear.com/000064039/Security-Advisory-for-Remo...3

▼ Show Information from Twitter(290)


List of frequently cited URLs

URLNum of Times Referred to
alerts.vulmon.com239
securityaffairs.co148
isecurityfeed.wordpress.com24
twitter.com3
kb.netgear.com3

▼ Show Information from Twitter(290)


GitHub Search Results: Up to 10
NameURL
No Data

GitHub Search Results: Up to 10
NameURL
No Data

2021/11/02 Score : 1
Added Har-sia Database : 2021/09/10
Last Modified : 2021/11/02
Highest Scored Date : 2021/09/23
Highest Score : 241