GHSA-h4m4-4f78-3cq7HighCVSS 7.1

A path traversal attack in web interfaces of Netgear RAX35, RAX38, and RAX40 routers before v1.0...

Published
December 10, 2021
Last Modified
July 5, 2026

🔗 CVE IDs covered (1)

📋 Description

A path traversal attack in web interfaces of Netgear RAX35, RAX38, and RAX40 routers before v1.0.4.102, allows a remote unauthenticated attacker to gain access to sensitive restricted information, such as forbidden files of the web application, via sending a specially crafted HTTP packet.

🔗 References (6)