CVE-2005-4220
Netgear RP114, and possibly other versions and devices, allows remote attackers to cause a denial of service via a SYN flood attack between one system on the internal interface and another on the external interface, which temporarily stops routing…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (1.85%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
Netgear RP114, and possibly other versions and devices, allows remote attackers to cause a denial of service via a SYN flood attack between one system on the internal interface and another on the external interface, which temporarily stops routing between the interfaces, as demonstrated using nmap.
- CVSS 2.0
- 7.8 HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
- EPSS
- 1.85% probability · 78th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-119
- Affected
- netgear/rp114
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/11698/Vendor Advisory
- http://www.securityfocus.com/archive/1/419243/100/0/threaded
- http://www.securityfocus.com/archive/1/419244/100/0/threaded
- http://www.securityfocus.com/archive/1/419485/100/0/threaded
- http://www.securityfocus.com/bid/15816
- http://secunia.com/advisories/11698/Vendor Advisory
- http://www.securityfocus.com/archive/1/419243/100/0/threaded
- http://www.securityfocus.com/archive/1/419244/100/0/threaded
- http://www.securityfocus.com/archive/1/419485/100/0/threaded
- http://www.securityfocus.com/bid/15816
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.