First published: Tue Apr 21 2020(Updated: )
Certain NETGEAR devices are affected by command injection. This affects R7800 before 1.0.2.16 and R9000 before 1.0.2.4.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
NETGEAR R7800 firmware | <1.0.2.16 | |
NETGEAR R7800 firmware | ||
NETGEAR R9000 firmware | <1.0.2.4 | |
NETGEAR R9000 firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-18804 is classified as a command injection vulnerability affecting specific NETGEAR devices.
To fix CVE-2017-18804, update the firmware of the R7800 to at least version 1.0.2.16 or the R9000 to at least version 1.0.2.4.
CVE-2017-18804 affects the NETGEAR R7800 before version 1.0.2.16 and the R9000 before version 1.0.2.4.
Command injection in CVE-2017-18804 refers to the ability of an attacker to execute arbitrary commands on affected NETGEAR routers.
It is not recommended to use the NETGEAR R7800 or R9000 if CVE-2017-18804 is present, as it poses a security risk.