First published: Mon Oct 14 2024(Updated: )
Netgear R7000 1.0.11.136 is vulnerable to Command Injection in RMT_invite.cgi via device_name2 parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
NETGEAR R7000 firmware | =1.0.11.136 | |
NETGEAR R7000 firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-35520 is rated as a high severity vulnerability due to its potential for remote command injection.
To fix CVE-2024-35520, update your Netgear R7000 firmware to the latest version released by Netgear.
CVE-2024-35520 is classified as a command injection vulnerability affecting the RMT_invite.cgi script.
CVE-2024-35520 specifically affects Netgear R7000 devices running firmware version 1.0.11.136.
Yes, CVE-2024-35520 could allow an attacker to execute arbitrary commands on the affected device, potentially leading to full system compromise.