First published: Fri Dec 15 2023(Updated: )
A Command Injection vulnerability exists in NETGEAR WNR2000v4 version 1.0.0.70. When using HTTP for SOAP authentication, command execution occurs during the process after successful authentication.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
NETGEAR WNR2000v2 | =1.0.0.70 | |
Netgear WNR2000v4 | =v4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-50089 is classified as a high-severity command injection vulnerability.
To mitigate CVE-2023-50089, it is recommended to upgrade your NETGEAR WNR2000v4 firmware to the latest version.
CVE-2023-50089 specifically affects NETGEAR WNR2000v4 firmware version 1.0.0.70.
CVE-2023-50089 is identified as a command injection vulnerability that occurs during HTTP SOAP authentication.
Yes, successful exploitation of CVE-2023-50089 can lead to command execution with potentially unauthorized access to the device.