CVE-2016-6277: NETGEAR Multiple Routers Remote Code Execution Vulnerability
NETGEAR R6250 before 1.0.4.6.Beta, R6400 before 1.0.1.18.Beta, R6700 before 1.0.1.14.Beta, R6900, R7000 before 1.0.7.6.Beta, R7100LG before 1.0.0.28.Beta, R7300DST before 1.0.0.46.Beta, R7900 before 1.0.1.8.Beta, R8000 before 1.0.3.26.Beta, D6220, D6400, D7000, and possibly other routers allow remote attackers to execute arbitrary commands via shell metacharacters in the path info to cgi-bin/.
Other sources
NETGEAR confirmed multiple routers allow unauthenticated web pages to pass form input directly to the command-line interface, permitting remote code execution.
— CISA
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2016-6277?
The severity of CVE-2016-6277 is categorized as high, indicating significant potential impact.
How do I fix CVE-2016-6277?
To fix CVE-2016-6277, update your NETGEAR router firmware to the latest available version.
What devices are affected by CVE-2016-6277?
CVE-2016-6277 affects various NETGEAR router models, including R6250, R6400, R6700, and others.
Can CVE-2016-6277 be exploited remotely?
Yes, CVE-2016-6277 can be exploited remotely without the need for local access to the device.
Is there any patch available for CVE-2016-6277?
Yes, NETGEAR has released firmware updates that address the vulnerability CVE-2016-6277.