First published: Wed Apr 15 2020(Updated: )
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects WAC505 before 8.2.1.16 and WAC510 before 8.2.1.16.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
NETGEAR WAC505 | <8.2.1.16 | |
NETGEAR WAC505 | ||
NETGEAR WAC510 firmware | <8.2.1.16 | |
NETGEAR WAC510 firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The affected devices for CVE-2019-20651 are NETGEAR WAC505 and WAC510 with firmware versions prior to 8.2.1.16.
CVE-2019-20651 has a high severity level as it allows command injection by an authenticated user.
To fix CVE-2019-20651, update the firmware of the NETGEAR WAC505 and WAC510 to version 8.2.1.16 or later.
CVE-2019-20651 cannot be exploited remotely as it requires authentication to affect the devices.
The impact of CVE-2019-20651 is that an authenticated attacker can execute arbitrary commands on the affected devices.