HTTP: Netgear ProSAFE NMS300 MFileUploadController Unrestricted File Upload

This signature detects attempts to exploit a known vulnerability against Netgear ProSAFE NMS300. A successful attack can lead to arbitrary code execution.

Extended Description

NETGEAR ProSAFE Network Management System UpLoadServlet Unrestricted File Upload Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of NETGEAR ProSAFE Network Management System. Authentication is required to exploit this vulnerability. The specific flaw exists within the UpLoadServlet class. The issue results from the lack of proper validation of user-supplied data, which can allow the upload of arbitrary files. An attacker can leverage this vulnerability to execute code in the context of SYSTEM. Was ZDI-CAN-22923.

Affected Products

Netgear prosafe_network_management_system

Short Name
HTTP:CTS:NETGEAR-NMS300-FUPLD
Severity
Critical
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
CVE-2021-27274 CVE-2021-27275 CVE-2023-38095 CVE-2023-38098 CVE-2024-5247 File MFileUploadController NMS300 Netgear ProSAFE Unrestricted Upload
Release Date
06/24/2021
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3782
False Positive
Unknown
Vendors

Netgear

CVSS Score

10.0

Found a potential security threat?