CVE-2020-26929: Command Injection
Published Oct 9, 2020
·Updated
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects R6220 before 1.1.0.100 and R6230 before 1.1.0.100.
Affected Software
4 affected components
Netgear R6230 Firmware<1.1.0.100
Netgear R6230
Netgear R6220 Firmware<1.1.0.100
Netgear R6220
Event History
Oct 9, 2020
CVE Published
via MITRE·06:26 AM
Data Sourced
via MITRE·06:26 AM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2020-26929?
CVE-2020-26929 is a vulnerability that allows an authenticated user to perform command injection on certain NETGEAR devices.
2
Which devices are affected by CVE-2020-26929?
NETGEAR R6220 devices before firmware version 1.1.0.100 and NETGEAR R6230 devices before firmware version 1.1.0.100 are affected by CVE-2020-26929.
3
How severe is CVE-2020-26929?
CVE-2020-26929 has a severity level of high.
4
How can I fix CVE-2020-26929?
To fix CVE-2020-26929, update your NETGEAR R6220 or R6230 device to firmware version 1.1.0.100 or later.
5
Where can I find more information about CVE-2020-26929?
You can find more information about CVE-2020-26929 in the Netgear Security Advisory PSV-2019-0011.