AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2024-54809

CRITICAL · CVSS 9.8 EPSS 0.65%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2025-03-31 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 9.8. See the original NVD description below for full technical details.

CVE
CVE-2024-54809
Severity
CRITICAL
CVSS
9.8
EPSS
0.65%

Original NVD Description

Netgear Inc WNR854T 1.5.2 (North America) contains a stack-based buffer overflow vulnerability in the parse_st_header function due to use of a request header parameter in a strncpy where size is determined based on the input specified. By sending a specially crafted packet, an attacker can take control of the program counter and hijack control flow of the program to execute arbitrary system commands.

Related CVEs

Other vulnerabilities affecting the same vendor(s)