First published: Fri Sep 17 2021(Updated: )
setup.cgi on NETGEAR R6020 1.0.0.48 devices allows an admin to execute arbitrary shell commands via shell metacharacters in the ntp_server field.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Netgear R6020 Firmware | =1.0.0.48 | |
NETGEAR R6020 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-41383 is a vulnerability found in NETGEAR R6020 1.0.0.48 devices that allows an admin to execute arbitrary shell commands via shell metacharacters in the ntp_server field.
CVE-2021-41383 has a severity level of 7.2 (critical).
An admin can execute arbitrary shell commands in CVE-2021-41383 by using shell metacharacters in the ntp_server field.
NETGEAR R6020 1.0.0.48 devices are affected by CVE-2021-41383.
Yes, NETGEAR R6020 devices with firmware version 1.0.0.48 are vulnerable to CVE-2021-41383.
To fix CVE-2021-41383, update the firmware of your NETGEAR R6020 device to a version that addresses the vulnerability.