CVE-2020-14436: Command Injection
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects RBK752 before 3.2.15.25, RBK753 before 3.2.15.25, RBK753S before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK852 before 3.2.15.25, RBK853 before 3.2.15.25, RBR850 before 3.2.15.25, RBS850 before 3.2.15.25, RBK842 before 3.2.15.25, RBR840 before 3.2.15.25, and RBS840 before 3.2.15.25.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-14436?
CVE-2020-14436 has a high severity rating as it allows command injection from unauthenticated attackers.
How do I fix CVE-2020-14436?
To fix CVE-2020-14436, update the firmware of affected NETGEAR devices to version 3.2.15.25 or later.
Which NETGEAR devices are affected by CVE-2020-14436?
CVE-2020-14436 affects various NETGEAR devices including RBK752, RBK753, RBK753S, RBR750, and several other models prior to firmware version 3.2.15.25.
Can I exploit CVE-2020-14436 remotely?
Yes, CVE-2020-14436 can be exploited remotely by unauthenticated attackers due to its command injection vulnerability.
What are the implications of CVE-2020-14436 for my network?
If exploited, CVE-2020-14436 may allow attackers to execute arbitrary commands on the affected NETGEAR devices, potentially compromising the integrity of your network.