CVE-2017-18841: Command Injection
Certain NETGEAR devices are affected by command injection. This affects R6220 before 1.1.0.46, R6700v2 before 1.1.0.38, R6800 before 1.1.0.38, WNDR3700v5 before 1.1.0.46, and D7000 before 1.0.1.50.
Affected Software
Event History
Frequently Asked Questions
Which NETGEAR devices are affected by command injection?
Certain NETGEAR devices are affected by command injection, including R6220, R6700v2, R6800, WNDR3700v5, and D7000.
What is the severity of CVE-2017-18841?
The severity of CVE-2017-18841 is medium, with a severity value of 6.7.
How do I fix CVE-2017-18841?
To fix CVE-2017-18841, update the firmware of affected NETGEAR devices to versions 1.1.0.46 for R6220, 1.1.0.38 for R6700v2 and R6800, 1.1.0.46 for WNDR3700v5, and 1.0.1.50 for D7000.
What is command injection?
Command injection is a vulnerability that allows an attacker to execute arbitrary commands on a target system.
Where can I find more information about CVE-2017-18841?
You can find more information about CVE-2017-18841 on the NETGEAR Knowledge Base at https://kb.netgear.com/000049018/Security-Advisory-for-Command-Injection-on-Some-Routers-and-a-Modem-Router-PSV-2017-2158.