Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-50089


A Command Injection vulnerability exists in NETGEAR WNR2000v4 version 1.0.0.70. When using HTTP for SOAP authentication, command execution occurs during the process after successful authentication.


Published

2023-12-15T17:15:12.780

Last Modified

2024-11-21T08:36:31.280

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

Weaknesses
  • Type: Primary
    CWE-77

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System netgear wnr2000_firmware 1.0.0.70 Yes
Hardware netgear wnr2000 v4 No

References