CVE Database
/

CVE-2023-28338

Back to search

CVE-2023-28338

Published: Mar 15, 2023

Modified: Feb 27, 2025

PUBLISHED

Description

Any request send to a Netgear Nighthawk Wifi6 Router (RAX30)'s web service containing a “Content-Type” of “multipartboundary=” will result in the request body being written to “/tmp/mulipartFile” on the device itself. A sufficiently large file will cause device resources to be exhausted, resulting in the device becoming unusable until it is rebooted.

VendorProductVersions

n/a

NETGEAR Nighthawk WiFi6 Router (RAX30)

affected
All known versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now