First published: Mon Aug 07 2023(Updated: )
Netgear R7100LG 1.0.0.78 was discovered to contain a command injection vulnerability via the password parameter at usb_remote_invite.cgi.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Netgear R7100lg Firmware | =1.0.0.78 | |
Netgear R7100LG |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-38928 is a command injection vulnerability found in Netgear R7100LG firmware version 1.0.0.78.
CVE-2023-38928 has a severity rating of 9.8 (critical).
Netgear R7100LG firmware version 1.0.0.78 is affected by CVE-2023-38928.
CVE-2023-38928 can be exploited by injecting malicious commands through the 'password' parameter in the usb_remote_invite.cgi script.
Yes, you can find more information about CVE-2023-38928 on the GitHub page for IoT-Vulns and the Netgear security advisory.