RULE(RULE ID:333723)

Rule General Information
Release Date: 2021-03-11
Rule Name: Netgear ProSAFE Plus Integer Overflow Vulnerability (CVE-2020-35230)
Severity:
CVE ID:
Rule Protection Details
Description: Multiple integer overflow parameters were found in the web administration panel on NETGEAR JGS516PE/GS116Ev2 v2.6.0.43 devices. Most of the integer parameters sent through the web server can be abused to cause a denial of service attack.
Impact: An attacker can exploit the affected software with a integer overflow vulnerability. Successful exploit leads to execute arbitrary code, and failed exploit may disturb the software logic and cause denial of service.
Affected OS: Windows, Others
Reference: https://research.nccgroup.com/2021/03/08/technical-advisory-multiple-vulnerabilities-in-netgear-prosafe-plus-jgs516pe-gs116ev2-switches/
Solutions
The vendors have released upgrade patches to fix vulnerabilities, please visit:
https://www.netgear.com/