PT-2020-8341 · NetGear · Netgear R6100

Published

2020-04-21

·

Updated

2020-04-23

·

CVE-2017-18792

CVSS v3.1

8.4

High

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: NETGEAR D6100 devices before version 1.0.0.50 0.0.50
Description: The issue affects NETGEAR D6100 devices and is related to command injection. No information is provided about the estimated number of potentially affected devices worldwide or real-world incidents where this issue was exploited.
Recommendations: For versions prior to 1.0.0.50 0.0.50, update to version 1.0.0.50 0.0.50 or later to resolve the issue. As a temporary workaround, consider restricting access to the device to minimize the risk of exploitation.

Fix

Special Elements Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-18792

Affected Products

Netgear R6100