Description
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects R6400v2 before 1.0.4.84, R6700v3 before 1.0.4.84, R6900P before 1.3.2.124, R7000 before 1.0.11.100, R7000P before 1.3.2.124, R7800 before 1.0.2.74, R7850 before 1.0.5.60, R7900 before 1.0.4.26, R7960P before 1.4.1.50, R8000 before 1.0.4.52, R7900P before 1.4.1.50, R8000P before 1.4.1.50, RAX15 before 1.0.1.64, RAX20 before 1.0.1.64, RAX200 before 1.0.1.12, RAX45 before 1.0.2.66, RAX50 before 1.0.2.66, RAX75 before 1.0.3.102, RAX80 before 1.0.3.102, RBK752 before 3.2.16.6, RBR750 before 3.2.16.6, RBS750 before 3.2.16.6, RBK852 before 3.2.15.25, RBR850 before 3.2.15.25, RBS850 before 3.2.15.25, RBK842 before 3.2.15.25, RBR840 before 3.2.15.25, RBS840 before 3.2.15.25, RS400 before 1.5.0.48, and XR300 before 1.0.3.50.
Published: 2020-12-29
Score: 9.3 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2020-23453 Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects R6400v2 before 1.0.4.84, R6700v3 before 1.0.4.84, R6900P before 1.3.2.124, R7000 before 1.0.11.100, R7000P before 1.3.2.124, R7800 before 1.0.2.74, R7850 before 1.0.5.60, R7900 before 1.0.4.26, R7960P before 1.4.1.50, R8000 before 1.0.4.52, R7900P before 1.4.1.50, R8000P before 1.4.1.50, RAX15 before 1.0.1.64, RAX20 before 1.0.1.64, RAX200 before 1.0.1.12, RAX45 before 1.0.2.66, RAX50 before 1.0.2.66, RAX75 before 1.0.3.102, RAX80 before 1.0.3.102, RBK752 before 3.2.16.6, RBR750 before 3.2.16.6, RBS750 before 3.2.16.6, RBK852 before 3.2.15.25, RBR850 before 3.2.15.25, RBS850 before 3.2.15.25, RBK842 before 3.2.15.25, RBR840 before 3.2.15.25, RBS840 before 3.2.15.25, RS400 before 1.5.0.48, and XR300 before 1.0.3.50.
History

No history.

Subscriptions

Netgear R6400v2 R6400v2 Firmware R6700v3 R6700v3 Firmware R6900p R6900p Firmware R7000 R7000 Firmware R7000p R7000p Firmware R7800 R7800 Firmware R7850 R7850 Firmware R7900 R7900 Firmware R7900p R7900p Firmware R7960p R7960p Firmware R8000 R8000 Firmware R8000p R8000p Firmware Rax15 Rax15 Firmware Rax20 Rax200 Rax200 Firmware Rax20 Firmware Rax45 Rax45 Firmware Rax50 Rax50 Firmware Rax75 Rax75 Firmware Rax80 Rax80 Firmware Rbk752 Rbk752 Firmware Rbk842 Rbk842 Firmware Rbk852 Rbk852 Firmware Rbr750 Rbr750 Firmware Rbr840 Rbr840 Firmware Rbr850 Rbr850 Firmware Rbs750 Rbs750 Firmware Rbs840 Rbs840 Firmware Rbs850 Rbs850 Firmware Rs400 Rs400 Firmware Xr300 Xr300 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T17:09:15.203Z

Reserved: 2020-12-29T00:00:00.000Z

Link: CVE-2020-35798

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-12-30T00:15:14.267

Modified: 2024-11-21T05:28:08.150

Link: CVE-2020-35798

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses