#VU51395 Permissions, Privileges, and Access Controls in JGS516PE and GS116Ev2 - CVE-2020-35232
Published: March 11, 2021 / Updated: March 11, 2021
JGS516PE
GS116Ev2
NETGEAR
Description
The vulnerability allows a remote attacker to escalate privileges on the system.
The vulnerability exists due to the firmware update mechanism does not properly implements internal checks such as firmware length or checksum validations. A remote attacker on the local network can use a specially crafted firmware files and overwrite the entire memory with custom code