CVE-2018-21123
8.8
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD
Description
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects WC7500 before 6.5.3.9, WC7520 before 6.5.3.9, WC7600v1 before 6.5.3.9, and WC7600v2 before 6.5.3.9.
Affected (3)
Products: Netgear: Wc7500 Firmware, Wc7520 Firmware, Wc7600 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 6.5.3.9 |
| Running on/with | Platform Versions |
|---|---|
Netgear Wc7500 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 6.5.3.9 |
| Running on/with | Platform Versions |
|---|---|
Netgear Wc7520 | All versions |
Configuration C
| Running on/with | Platform Versions |
|---|---|
Netgear Wc7600 | Version v1 |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 6.5.3.9 |
| Running on/with | Platform Versions |
|---|---|
Netgear Wc7600 | Version v2 |
References (2)
Source: cve@mitre.org
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.