First published: Wed Aug 14 2019(Updated: )
An issue was discovered on NETGEAR Nighthawk M1 (MR1100) devices before 12.06.03. System commands can be executed, via the web interface, after authentication.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
NETGEAR MR1100 | <12.06.03 | |
NETGEAR MR1100 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2019-14527 is rated as high severity due to the potential for unauthorized system command execution.
To fix CVE-2019-14527, update the firmware of your NETGEAR Nighthawk M1 device to version 12.06.03 or later.
Users of the NETGEAR Nighthawk M1 (MR1100) device running firmware versions prior to 12.06.03 are affected by CVE-2019-14527.
CVE-2019-14527 is a command injection vulnerability that can be exploited via the web interface.
Yes, CVE-2019-14527 can be exploited remotely after gaining access to the web interface of the device.