Jump to content

Hotfix for remote code execution attack on XR300


Guest Killhippie
 Share

Recommended Posts

Guest Killhippie

This Hotfix for the XR300 is really worth installing as soon as you can. Maybe @Netduma Fraser of @Netduma Alex can add it to the firmware section due to its importance.

"Since authentication is not required to reach this bug, anyone would be capable of exploiting this vulnerability. Since it’s remote code execution, you can completely take over the router, the attacker would be able to possibly upload a custom backdoor software and establish persistence or launch further attacks, like man-in-the-middle attacks."

https://kb.netgear.com/000062023/XR300-Firmware-Version-1-0-3-44-Hot-Fix

Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
 Share

×
×
  • Create New...