CVE-2020-35793: Command Injection
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D7800 before 1.0.1.58, R7500v2 before 1.0.3.46, R7800 before 1.0.2.74, R8900 before 1.0.5.2, and R9000 before 1.0.5.2.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-35793?
CVE-2020-35793 is a vulnerability affecting certain NETGEAR devices, allowing command injection by an authenticated user.
Which NETGEAR devices are affected by CVE-2020-35793?
NETGEAR devices D7800, R7500v2, R7800, R8900, and R9000 are affected by CVE-2020-35793.
How severe is CVE-2020-35793?
CVE-2020-35793 has a severity rating of 6.7, which is considered medium severity.
How can an authenticated user exploit CVE-2020-35793?
An authenticated user can exploit CVE-2020-35793 by injecting commands into the affected NETGEAR devices.
Is there a fix available for CVE-2020-35793?
Yes, NETGEAR has released firmware updates to fix the CVE-2020-35793 vulnerability. Please refer to the official NETGEAR security advisory for more information.