PT-2025-13830 · NetGear · Netgear Wnr854T

Published

2024-11-16

·

Updated

2025-03-31

·

CVE-2024-54807

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Netgear WNR854T version 1.5.2
Description The issue concerns a command injection vulnerability in the UPNP service, specifically in the addmap exec function. This function parses the NewInternalClient parameter of the "AddPortMapping" SOAPAction into a system call without proper sanitation. An attacker can exploit this by sending a specially crafted SOAPAction request for "AddPortMapping" via the router's WANIPConn1 service, potentially achieving arbitrary command execution.
Recommendations For Netgear WNR854T version 1.5.2, as a temporary workaround, consider disabling the addmap exec function until a patch is available. Restrict access to the WANIPConn1 service to minimize the risk of exploitation. Avoid using the NewInternalClient parameter in the affected "AddPortMapping" SOAPAction until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

OS Command Injection

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-03674
CVE-2024-54807

Affected Products

Netgear Wnr854T