Description
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D3600 before 1.0.0.75, D6000 before 1.0.0.75, D6100 before 1.0.0.63, EX2700 before 1.0.1.48, EX6100v2 before 1.0.1.76, EX6150v2 before 1.0.1.76, EX6200v2 before 1.0.1.72, EX6400 before 1.0.2.136, EX7300 before 1.0.2.136, EX8000 before 1.0.1.180, R7800 before 1.0.2.52, R8900 before 1.0.4.2, R9000 before 1.0.4.2, WN2000RPTv3 before 1.0.1.32, WN3000RPv2 before 1.0.0.68, WN3100RPv2 before 1.0.0.60, WNDR3700v4 before 1.0.2.102, WNDR4300v1 before 1.0.2.104, WNDR4300v2 before 1.0.0.58, WNDR4500v3 before 1.0.0.58, WNR2000v5 before 1.0.0.68, and XR500 before 2.3.2.32.
Published: 2020-04-16
Score: 6.8 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2019-11227 Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D3600 before 1.0.0.75, D6000 before 1.0.0.75, D6100 before 1.0.0.63, EX2700 before 1.0.1.48, EX6100v2 before 1.0.1.76, EX6150v2 before 1.0.1.76, EX6200v2 before 1.0.1.72, EX6400 before 1.0.2.136, EX7300 before 1.0.2.136, EX8000 before 1.0.1.180, R7800 before 1.0.2.52, R8900 before 1.0.4.2, R9000 before 1.0.4.2, WN2000RPTv3 before 1.0.1.32, WN3000RPv2 before 1.0.0.68, WN3100RPv2 before 1.0.0.60, WNDR3700v4 before 1.0.2.102, WNDR4300v1 before 1.0.2.104, WNDR4300v2 before 1.0.0.58, WNDR4500v3 before 1.0.0.58, WNR2000v5 before 1.0.0.68, and XR500 before 2.3.2.32.
History

No history.

Subscriptions

Netgear D3600 D3600 Firmware D6000 D6000 Firmware D6100 D6100 Firmware Ex2700 Ex2700 Firmware Ex6100 Ex6100 Firmware Ex6150 Ex6150 Firmware Ex6200 Ex6200 Firmware Ex6400 Ex6400 Firmware Ex7300 Ex7300 Firmware Ex8000 Ex8000 Firmware R7800 R7800 Firmware R8900 R8900 Firmware R9000 R9000 Firmware Wn2000rpt Wn2000rpt Firmware Wn3000rp Wn3000rp Firmware Wn3100rp Wn3100rp Firmware Wndr3700 Wndr3700 Firmware Wndr4300 Wndr4300 Firmware Wndr4500 Wndr4500 Firmware Wnr2000 Wnr2000 Firmware Xr500 Xr500 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T02:46:10.437Z

Reserved: 2020-04-15T00:00:00.000Z

Link: CVE-2019-20688

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-04-16T19:15:23.260

Modified: 2024-11-21T04:39:05.197

Link: CVE-2019-20688

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses