NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
In firmware version 4.6.14.3, lighttpd is at version 1.4.58. Numerous security vulnerabilities exist in lighttpd 1.4.58:
https://www.cvedetails.com/vulnerability-list/vendor_id-2713/Lighttpd.html
Two of the more serious vulnerabilities are:
https://www.cvedetails.com/cve/CVE-2022-30780/
https://www.cvedetails.com/cve/CVE-2022-41556/
And for CVE-2022-41556, it's quite possible my RBR750 has been impacted for quite some time.
Please upgrade lighttpd to 1.4.67 or newer in the next firmware release!!!
No CommentsBe the first to comment