Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-46424


An exploitable firmware modification vulnerability was discovered on the Netgear XWN5001 Powerline 500 WiFi Access Point. An attacker can conduct a MITM (Man-in-the-Middle) attack to modify the user-uploaded firmware image and bypass the CRC check, allowing attackers to execute arbitrary code or cause a Denial of Service (DoS). This affects v0.4.1.1 and earlier.


Published

2022-12-20T20:15:10.630

Last Modified

2025-04-16T19:15:48.390

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 8.1 (HIGH)

Weaknesses
  • Type: Primary
    NVD-CWE-noinfo

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System netgear xwn5001_firmware ≤ 0.4.1.1 Yes
Hardware netgear xwn5001 - No

References