First published: Tue Apr 21 2020(Updated: )
Certain NETGEAR devices are affected by command injection. This affects R6220 before 1.1.0.50, R6700v2 before 1.1.0.38, R6800 before 1.1.0.38, WNDR3700v5 before 1.1.0.48, and D7000 before 1.0.1.50.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
NETGEAR R6220 firmware | <1.1.0.50 | |
NETGEAR R6220 firmware | ||
Netgear R6700 Firmware | <1.1.0.38 | |
NETGEAR R6700v1 firmware | =v2 | |
NETGEAR R6800 firmware | <1.1.0.38 | |
NETGEAR R6800 firmware | ||
NETGEAR WNDR3700 firmware | <1.1.0.48 | |
NETGEAR WNDR3700v4 | =v5 | |
NETGEAR D7000v1 firmware | <1.0.1.50 | |
NETGEAR D7000 firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-18801 is classified as a command injection vulnerability affecting specific NETGEAR devices.
To resolve CVE-2017-18801, update the affected NETGEAR devices to their latest firmware versions.
CVE-2017-18801 impacts NETGEAR R6220, R6700v2, R6800, WNDR3700v5, and D7000 running below specific firmware versions.
Failing to address CVE-2017-18801 may expose affected NETGEAR devices to potential command injection attacks.
Yes, CVE-2017-18801 can be exploited remotely, allowing attackers to execute arbitrary commands on the affected devices.