Back to search
CVE-2023-28338
Published: Mar 15, 2023
Modified: Feb 27, 2025
PUBLISHED
Description
Any request send to a Netgear Nighthawk Wifi6 Router (RAX30)'s web service containing a “Content-Type” of “multipartboundary=” will result in the request body being written to “/tmp/mulipartFile” on the device itself. A sufficiently large file will cause device resources to be exhausted, resulting in the device becoming unusable until it is rebooted.
| Vendor | Product | Versions |
|---|---|---|
n/a | NETGEAR Nighthawk WiFi6 Router (RAX30) | affected All known versions |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now