Vulnerability Details CVE-2022-38956
An exploitable firmware downgrade vulnerability was discovered on the Netgear WPN824EXT WiFi Range Extender. An attacker can conduct a MITM attack to replace the user-uploaded firmware image with an original old firmware image. This affects Firmware 1.1.1_1.1.9 and earlier.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 37.0%
CVSS Severity
CVSS v3 Score 5.3
Products affected by CVE-2022-38956
-
cpe:2.3:h:netgear:wpn824ext:-
-
cpe:2.3:o:netgear:wpn824ext_firmware:1.1.1_1.1.9