Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects XR300 before 1.0.3.68, R7000P before 1.3.3.140, and R6900P before 1.3.3.140.
2021-12-26T01:15:18.963
2024-11-21T06:32:42.687
Modified
CVSSv3.1: 9.6 (CRITICAL)
AV:N/AC:L/Au:N/C:P/I:P/A:P
10.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | netgear | xr300_firmware | < 1.0.3.68 | Yes |
Hardware | netgear | xr300 | - | No |
Operating System | netgear | r7000p_firmware | < 1.3.3.140 | Yes |
Hardware | netgear | r7000p | - | No |
Operating System | netgear | r6900p_firmware | < 1.3.3.140 | Yes |
Hardware | netgear | r6900p | - | No |