CVE-2021-34947

HIGH
Published May 7, 2024 Modified Aug 14, 2025 CWE-787

Description

NETGEAR R7800 net-cgi Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R7800 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the parsing of the soap_block_table file. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated data structure. An attacker can leverage this vulnerability to execute code in the context of root. . Was ZDI-CAN-13055.

Is your site exposed to CVE-2021-34947?

Run a free security scan — no signup, results in seconds.

CVSS v3.1 Score

8.8
HIGH
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Weakness Type (CWE)

CWE-787 Out-of-bounds Write

Affected Products

Vendor Product
netgear d7800_firmware
netgear d7800
netgear ex2700_firmware
netgear ex2700
netgear ex6100_firmware
netgear ex6100
netgear ex6150_firmware
netgear ex6150
netgear ex6200_firmware
netgear ex6200
netgear ex6250_firmware
netgear ex6250
netgear ex6400_firmware
netgear ex6400
netgear ex6400v2_firmware
netgear ex6400v2
netgear ex6410_firmware
netgear ex6410
netgear ex6420_firmware
netgear ex6420
netgear ex6500v1_firmware
netgear ex6500v1
netgear ex7300_firmware
netgear ex7300
netgear ex7300v2_firmware
netgear ex7300v2
netgear ex7320_firmware
netgear ex7320
netgear ex7700_firmware
netgear ex7700
netgear ex8000_firmware
netgear ex8000
netgear lbr1020_firmware
netgear lbr1020
netgear lbr20_firmware
netgear lbr20
netgear r6700ax_firmware
netgear r6700ax
netgear r7800_firmware
netgear r7800
netgear r8900_firmware
netgear r8900
netgear r9000_firmware
netgear r9000
netgear rax10_firmware
netgear rax10
netgear rax120_firmware
netgear rax120
netgear rax120v2_firmware
netgear rax120v2
netgear rax70_firmware
netgear rax70
netgear rax78_firmware
netgear rax78
netgear rbr10_firmware
netgear rbr10
netgear rbr20_firmware
netgear rbr20
netgear rbr40_firmware
netgear rbr40
netgear rbr50_firmware
netgear rbr50
netgear rbs10_firmware
netgear rbs10
netgear rbs20_firmware
netgear rbs20
netgear rbs40_firmware
netgear rbs40
netgear rbs50_firmware
netgear rbs50
netgear rbs50y_firmware
netgear rbs50y
netgear wn3000rpv2_firmware
netgear wn3000rpv2
netgear wnr2000v5_firmware
netgear wnr2000v5
netgear xr450_firmware
netgear xr450
netgear xr500_firmware
netgear xr500
netgear xr700_firmware
netgear xr700

References

Frequently Asked Questions

What is CVE-2021-34947? +
NETGEAR R7800 net-cgi Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R7800 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the parsing of the soap_block_table file. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated data structure. An attacker can leverage this vulnerability to execute code in the context of root. . Was ZDI-CAN-13055. It has a CVSS v3.1 base score of 8.8 (HIGH).
How severe is CVE-2021-34947? +
CVE-2021-34947 has a CVSS v3.1 score of 8.8 out of 10, rated HIGH. This is a high-severity vulnerability that should be prioritized for patching.
What products are affected by CVE-2021-34947? +
CVE-2021-34947 affects products from netgear, specifically: d7800, d7800_firmware, ex2700, ex2700_firmware, ex6100, ex6100_firmware, ex6150, ex6150_firmware, ex6200, ex6200_firmware, ex6250, ex6250_firmware, ex6400, ex6400_firmware, ex6400v2, ex6400v2_firmware, ex6410, ex6410_firmware, ex6420, ex6420_firmware, ex6500v1, ex6500v1_firmware, ex7300, ex7300_firmware, ex7300v2, ex7300v2_firmware, ex7320, ex7320_firmware, ex7700, ex7700_firmware, ex8000, ex8000_firmware, lbr1020, lbr1020_firmware, lbr20, lbr20_firmware, r6700ax, r6700ax_firmware, r7800, r7800_firmware, r8900, r8900_firmware, r9000, r9000_firmware, rax10, rax10_firmware, rax120, rax120_firmware, rax120v2, rax120v2_firmware, rax70, rax70_firmware, rax78, rax78_firmware, rbr10, rbr10_firmware, rbr20, rbr20_firmware, rbr40, rbr40_firmware, rbr50, rbr50_firmware, rbs10, rbs10_firmware, rbs20, rbs20_firmware, rbs40, rbs40_firmware, rbs50, rbs50_firmware, rbs50y, rbs50y_firmware, wn3000rpv2, wn3000rpv2_firmware, wnr2000v5, wnr2000v5_firmware, xr450, xr450_firmware, xr500, xr500_firmware, xr700, xr700_firmware. Check the affected products table above for specific version ranges.
How do I check if I'm vulnerable to CVE-2021-34947? +
You can use Secably's free Website Scanner to check your website for known vulnerabilities. For infrastructure scanning, use the Port Scanner to identify exposed services that may be affected. Check the vendor advisories linked above for specific patch and version information.

Related Vulnerabilities

Don't wait for an exploit

Scan your website for vulnerabilities like CVE-2021-34947 — free, no signup required.