CVE-2020-26922
6.7
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitability: 0.8 / Impact: 5.9
Source: NVD
Description
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects WC7500 before 6.5.5.24, WC7600 before 6.5.5.24, WC7600v2 before 6.5.5.24, and WC9500 before 6.5.5.24.
Affected (4)
Products: Netgear: Wc7500 Firmware, Wc7600 Firmware, Wc7600v2 Firmware, Wc9500 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 6.5.5.24 |
| Running on/with | Platform Versions |
|---|---|
Netgear Wc7500 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 6.5.5.24 |
| Running on/with | Platform Versions |
|---|---|
Netgear Wc7600 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 6.5.5.24 |
| Running on/with | Platform Versions |
|---|---|
Netgear Wc7600v2 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 6.5.5.24 |
| Running on/with | Platform Versions |
|---|---|
Netgear Wc9500 | All versions |
References (2)
Source: cve@mitre.org
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.