HIGH

CVE-2020-10923

CVSS v3

8.8

HIGH

EPSS Score

34.1%

exploit probability

CISA KEV

No

known exploited

Exploitation

SSVC status

Description

This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the UPnP service, which listens on TCP port 5000. A crafted UPnP message can be used to bypass authentication. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of root. Was ZDI-CAN-9642.

Technical details

Published
7/28/2020

Frequently asked questions

What is CVE-2020-10923?

This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the UPnP service, which listens on TCP port 5000. A crafted UPnP message can be used to bypass authentication. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of root. Was ZDI-CAN-9642.

Is CVE-2020-10923 actively exploited?

Active exploitation of CVE-2020-10923 has not been confirmed. The EPSS score is 34.1%, indicating the estimated probability of exploitation in the next 30 days.

What is the CVSS score for CVE-2020-10923?

CVE-2020-10923 has a CVSS v3 base score of 8.8 (HIGH severity).

Is CVE-2020-10923 affecting your environment?

Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.