CVE-2022-4873 Information

Description

On Netcomm router models NF20MESH NF20 and NL1902 a stack based buffer overflow affects the sessionKey parameter. By providing a specific number of bytes the instruction pointer is able to be overwritten on the stack and crashes the application at a known location.

Reference

https://github.com/scarvell/advisories/blob/main/2022_netcomm_nf20mesh_unauth_rce.md

Share on: