Impact
A buffer overflow flaw exists in several NETGEAR Nighthawk routers and satellite units, allowing an authenticated administrator to trigger a temporary device outage. The weakness, categorized as CWE‑121, can cause the affected device to become unavailable to its network, disrupting internet access and local services solely at the host level.
Affected Systems
The vulnerability affects NETGEAR MR70, MR90, MS70, MS90, and multiple RAX series routers (RAX41, RAX41v2, RAX42, RAX42v2, RAX43, RAX43v2, RAX49S, RAX50, RAX50v2, RAX54S, RAX54Sv2). End‑of‑Support models are also listed but receive no security updates and should be retired.
Risk and Exploitability
The CVSS score of 1.1 indicates a very low intrinsic severity, and the EPSS score is not available, suggesting limited real‑world exploitation potential. The flaw requires local administrative access; an attacker would need to authenticate as a device administrator or compromise an existing admin account to trigger the outage. The vulnerability is not referenced in the CISA KEV catalog, and there is no known widespread exploit. Retrospectively, the risk remains primarily a localized denial of service event, not a conduit for broader network compromise.
OpenCVE Enrichment