NETGEAR R6700 httpd固件上传基于堆栈的缓冲区溢出远程执行代码漏洞

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

Netgear R7000 # SOHO Device Exploitation After a long day of hard research, it's fun to relax, kick back, and do something easy. While modern software development processes have vastly improved the quality of commercial software as compared to 10-15 years ago, consumer network devices have largely been left behind. Thus, when it's time for some quick fun and a nice confidence boost, I like to analyze Small Office/Home Office (SOHO) devices. This blog describes one such session of auditing the [Netgear R7000 router](https://www.netgear.com/home/products/networking/wifi- routers/R7000.aspx), analyzing the resulting vulnerability, and the exploit development process that followed. The write-up and code for the vulnerability described in this blog post can be found in our [NotQuite0DayFriday](https://github.com/grimm- co/NotQuite0DayFriday/tree/master/2020.06.15-netgear) repository. ## Initial Analysis The first step when analyzing a SOHO device is to obtain the firmware. Thankfully,...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息